Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 28-04-2021 Exécuté par François (administrateur) sur HAL (Micro-Star International Co., Ltd. PE70 2QE) (29-04-2021 19:29:47) Exécuté depuis C:\Users\François\Desktop Profils chargés: François Platform: Windows 10 Home Version 2004 19041.928 (X64) Langue: Français (France) Navigateur par défaut: Chrome Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) () [Fichier non signé] C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSISvc32.exe () [Fichier non signé] C:\Program Files\Nahimic\NahimicMSI\UserInterface\x64\NahimicMSISvc64.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\protectedservice.exe (A-Volute -> ) C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSIUILauncher.exe (Canon Inc. -> ) C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe (Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe (Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE (Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMUPDT.EXE (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <11> (INDEX EDUCATION SASU -> Index Education) C:\Program Files (x86)\Index Education\Mise a jour automatique\ServiceMiseAJourIndex.exe (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel(R) pGFX -> ) C:\Windows\System32\igfxTray.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe (Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2103.7-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2103.7-0\NisSrv.exe (MICRO-STAR INTERNATIONAL CO., LTD -> Micro-Star International Co., Ltd.) [Fichier non signé] C:\Program Files (x86)\MSI\SHIFT\ShiftOSD.exe (Micro-Star International CO., LTD. -> ) C:\Program Files (x86)\SCM\SCM.exe (Micro-Star International CO., LTD. -> Application) [Fichier non signé] C:\Program Files (x86)\MSI\Shortcut Manager\HotkeyListener.exe (Micro-Star International CO., LTD. -> Micro-Star International Co., Ltd.) C:\Program Files (x86)\SCM\MSIService.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\Dragon Center\DragonCenter_Service.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Dragon Center\StorageMonitor\StorageMonitor.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Dragon Center\VRReady\VRDeviceMonitor.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Program Files (x86)\MSI\SUPER CHARGER\ChargeService.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Program Files (x86)\MSI\SUPER CHARGER\SUPER CHARGER.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2> (Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe (PORTRAIT DISPLAYS, INC. -> Portrait Displays, Inc) C:\Program Files\Portrait Displays\MSI True Color\MsiTrueColorHelper.exe (PORTRAIT DISPLAYS, INC. -> Portrait Displays, Inc.) C:\Program Files\Portrait Displays\MSI True Color\MsiTrueColor.exe (PORTRAIT DISPLAYS, INC. -> Portrait Displays, Inc.) C:\Program Files\Portrait Displays\MSI True Color\MsiTrueColorService.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Rivet Networks LLC -> CloudBees, Inc.) C:\Windows\System32\drivers\RivetNetworks\Killer\xTendUtilityService.exe (Rivet Networks LLC -> Rivet Networks LLC) C:\Windows\System32\drivers\RivetNetworks\Killer\xTendUtility.exe (Rivet Networks LLC -> Rivet Networks) C:\Windows\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnh.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnhService.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9269320 2018-11-07] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322712 2014-10-09] (Intel® Rapid Storage Technology -> Intel Corporation) HKLM\...\Run: [NahimicMSIUILauncher] => C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSIUILauncher.exe [170976 2015-02-25] (A-Volute -> ) HKLM\...\Run: [SCM] => C:\Program Files (x86)\SCM\SCM.exe [302888 2018-06-22] (Micro-Star International CO., LTD. -> ) HKLM\...\Run: [MsiTrueColor] => C:\Program Files\Portrait Displays\MSI True Color\MsiTrueColor.exe [4811048 2016-09-10] (PORTRAIT DISPLAYS, INC. -> Portrait Displays, Inc.) HKLM-x32\...\Run: [SHIFTOSD] => C:\Program Files (x86)\MSI\SHIFT\SHIFTOSD.exe [854152 2015-03-28] (MICRO-STAR INTERNATIONAL CO., LTD -> Micro-Star International Co., Ltd.) [Fichier non signé] HKLM-x32\...\Run: [SUPER CHARGER] => C:\Program Files (x86)\MSI\SUPER CHARGER\SUPER CHARGER.exe [1047536 2014-02-21] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) HKLM-x32\...\Run: [IJNetworkScannerSelectorEX2] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe [279240 2016-12-09] (Canon Inc. -> CANON INC.) HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1313408 2017-07-05] (Canon Inc. -> CANON INC.) HKU\S-1-5-21-3013798796-1205852533-1603031028-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [33169992 2021-03-18] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-3013798796-1205852533-1603031028-1001\...\RunOnce: [Delete Cached Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Users\François\AppData\Local\Microsoft\OneDrive\Update\OneDriveSetup.exe" HKU\S-1-5-21-3013798796-1205852533-1603031028-1001\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Users\François\AppData\Local\Microsoft\OneDrive\StandaloneUpdater\OneDriveSetup.exe" HKU\S-1-5-21-3013798796-1205852533-1603031028-1001\...\RunOnce: [Uninstall 21.052.0314.0001\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\François\AppData\Local\Microsoft\OneDrive\21.052.0314.0001\amd64" HKU\S-1-5-21-3013798796-1205852533-1603031028-1001\...\RunOnce: [Uninstall 21.052.0314.0001] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\François\AppData\Local\Microsoft\OneDrive\21.052.0314.0001" HKU\S-1-5-21-3013798796-1205852533-1603031028-1001\...\MountPoints2: {fcb6834b-6f09-11eb-832a-e4f89c4c5c79} - "F:\HiSuiteDownLoader.exe" HKLM\...\Windows x64\Print Processors\Canon TS5100 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDDQ.DLL [482816 2017-03-23] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Windows x64\Print Processors\hpzppw71: C:\Windows\System32\spool\prtprocs\x64\hpzppw71.dll [230400 2009-07-14] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation) HKLM\...\Print\Monitors\Canon BJ Language Monitor TS5100 series: C:\WINDOWS\system32\CNMLMDQ.DLL [1302016 2017-03-23] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\LIDIL hpzllw71: C:\WINDOWS\system32\hpzllw71.dll [53248 2009-07-14] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\90.0.4430.93\Installer\chrmstp.exe [2021-04-27] (Google LLC -> Google LLC) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\errorlog.txt [2018-05-09] () BootExecute: autocheck autochk * sdnclean64.exe GroupPolicy-x32: Restriction ? <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {09E54C0B-9DBC-413F-86A5-870CF0D739EA} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Pas de fichier <==== ATTENTION Task: {0A4D2B44-ED80-49F7-B532-8C665639B460} - System32\Tasks\AuroraStartup => C:\Program Files\Aurora\Aurora.exe [7929344 2018-09-18] () [Fichier non signé] Task: {0A6C45A8-FD8B-46C7-9E00-A5C8EE00422D} - System32\Tasks\{F11285F0-9154-4E72-B812-C1924E9C591D} => C:\WINDOWS\system32\pcalua.exe -a "F:\le D\Educ\littérature\hugo\AutoStart.exe" -d "F:\le D\Educ\littérature\hugo" Task: {195EAD9F-E8CB-4B6B-A15B-50EE805C0B5F} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Pas de fichier <==== ATTENTION Task: {25EE04DC-0622-4198-95C9-0509E3A3B411} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-12-10] (Google Inc -> Google Inc.) Task: {280E6851-2250-40BF-8EE6-D22741D62AA6} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Pas de fichier <==== ATTENTION Task: {2BE89609-35E1-4F4E-82A1-D37CD64D602C} - \Microsoft\Windows\UNP\RunCampaignManager -> Pas de fichier <==== ATTENTION Task: {2E7E7AFF-2845-4E33-A6AF-2AAD6165CEEA} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Pas de fichier <==== ATTENTION Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\WINDOWS\System32\AutoWorkplace.exe Task: {35A6E293-02C1-4ED0-A8EB-9F75EBDB0BBF} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1120152 2021-04-28] (Microsoft Corporation -> Microsoft Corporation) Task: {36592461-925F-4AF7-8577-C75DBDD8F0BE} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2021-03-18] (Piriform Software Ltd -> Piriform) Task: {408AD5F8-0D14-42D8-87FE-BFE0ABCFF8BC} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Pas de fichier <==== ATTENTION Task: {42682B73-2B99-49E2-B655-A947BC199F59} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Pas de fichier <==== ATTENTION Task: {471C26D6-EB28-424C-A690-33FE6D065E35} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [849264 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {47296BC8-699C-4510-BC06-C98CC9361C20} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23248800 2021-04-21] (Microsoft Corporation -> Microsoft Corporation) Task: {4AA432AB-6542-484D-9950-5120E1A225F6} - System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [876912 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {4D22486D-0A85-4873-B73F-944003109C96} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [876912 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {541EA472-C8B7-4C26-B70C-73C694797711} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [27616328 2021-03-18] (Piriform Software Ltd -> Piriform Software Ltd) Task: {5771D4E5-7FAD-4DD4-AD56-52A5755AF3FC} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [590704 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {585233DF-CE1C-4EC9-92D1-F40E7A26E25F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2103.7-0\MpCmdRun.exe [566368 2021-04-11] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {59ED6A4E-AB8E-41AE-9246-85A96AF8B5BE} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Pas de fichier <==== ATTENTION Task: {687F2DCF-73F4-4439-A5A6-54C8E7604717} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> Pas de fichier <==== ATTENTION Task: {6BF71A19-7294-4086-8442-9D3F4C73E245} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [114008 2021-04-28] (Microsoft Corporation -> Microsoft Corporation) Task: {6DE52BEA-373C-4837-B39E-EC2287B9630F} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload => {EBF00FCB-0769-4B81-9BEC-6C05514111AA} Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task => {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Task: {6FD6D280-A7FB-414E-BADF-567B1FCBB7A0} - System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [876912 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {7378C281-16EF-49F1-AA6F-EE2DF12F3454} - System32\Tasks\NahimicMSIsvc32Run => C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSIsvc32.exe [825344 2015-02-25] () [Fichier non signé] Task: {7BC01113-42D9-4190-8FD9-ADA2F43D0DDD} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2103.7-0\MpCmdRun.exe [566368 2021-04-11] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {834A3D1C-9A5A-4758-93E3-56D2ED64CCDC} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} Task: {83532353-D09C-4325-B58C-DCB1A79FEF9A} - System32\Tasks\NahimicMSIUILauncherRun => C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSIUILauncher.exe [170976 2015-02-25] (A-Volute -> ) Task: {83D9FF2B-1729-48B0-A7BC-CBD239A97AD8} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.) Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task => {1B1F472E-3221-4826-97DB-2C2324D389AE} Task: {88FF2EC1-EFF1-4367-8603-A2D74EAA5B0F} - System32\Tasks\NahimicMSIsvc64Run => C:\Program Files\Nahimic\NahimicMSI\UserInterface\x64\NahimicMSIsvc64.exe [263168 2015-02-25] () [Fichier non signé] Task: {8FADF968-AAF0-4640-B083-D427C3E87386} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> Pas de fichier <==== ATTENTION Task: {926362BD-1D6C-495C-95B1-F64BC8EBD316} - System32\Tasks\MSI_Shortcut Manager => C:\Program Files (x86)\MSI\Shortcut Manager\HotkeyListener.exe [887064 2016-07-14] (Micro-Star International CO., LTD. -> Application) [Fichier non signé] Task: {96F9026A-852F-45BF-BBD3-489BADFF501C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-12-10] (Google Inc -> Google Inc.) Task: {A0ACFD21-BAF5-407D-9BCB-AB0083B01555} - System32\Tasks\Synaptics TouchPad Enhancements => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe Task: {A62A9432-8C6C-4FA8-A550-89E8DAD9465D} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Pas de fichier <==== ATTENTION Task: {AD775528-3F5D-43D8-8BB9-215D85413FE7} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Pas de fichier <==== ATTENTION Task: {B257F90E-F8B0-4D1B-8723-3A1B526D89E6} - System32\Tasks\Avira_Antivirus_Systray => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [2651216 2021-03-11] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) Task: {B73D0FD8-AAA3-478C-BCCD-F014DF8D66AF} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Pas de fichier <==== ATTENTION Task: {BEA91B00-74C5-491B-8E0B-4D1D2E97FDB8} - System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [876912 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {CE2DE968-E342-40D7-9566-427D45E4A886} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371} Task: {D602E61A-B456-49BB-9E1D-78A94E38E707} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2103.7-0\MpCmdRun.exe [566368 2021-04-11] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {D9980E75-E008-42B2-AE83-E5864677712F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2103.7-0\MpCmdRun.exe [566368 2021-04-11] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {EB6F18BE-BE0A-40D7-9FE3-17A198A0CB94} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [849264 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {FAF67DF4-7A76-43E0-933E-A987511D8FFF} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [114008 2021-04-28] (Microsoft Corporation -> Microsoft Corporation) Task: {FF822546-D4A8-4E13-BD72-23ED1C9E5AE2} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23248800 2021-04-21] (Microsoft Corporation -> Microsoft Corporation) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{2d22d605-4d44-4c30-a13a-a6ccbafb61f6}: [DhcpNameServer] 80.58.61.250 80.58.61.254 Tcpip\..\Interfaces\{83b5080e-e887-42b4-98eb-e81143c92d10}: [DhcpNameServer] 192.168.1.1 Edge: ======= Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)] Edge Extension: (Pas de nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\WINDOWS\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [non trouvé(e)] Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)] Edge Extension: (Pas de nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\WINDOWS\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [non trouvé(e)] FireFox: ======== FF ProfilePath: C:\Users\François\AppData\Roaming\Mozilla\Firefox\Profiles\qdLDiHJn.default [2015-12-13] FF Extension: (Avira Browser Safety) - C:\Users\François\AppData\Roaming\Mozilla\Firefox\Profiles\qdLDiHJn.default\Extensions\abs@avira.com [2015-12-13] [] [non signé] FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32.dll [2019-01-24] (Adobe Systems Incorporated -> ) FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2019-07-02] (CANON INC.) [Fichier non signé] FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-02-25] (Intel(R) Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-02-25] (Intel(R) Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-03-06] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-04-01] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.11 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.7 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-04-21] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-3013798796-1205852533-1603031028-1001: @zoom.us/ZoomVideoPlugin -> C:\Users\François\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2020-04-02] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\François\AppData\Local\Google\Chrome\User Data\Default [2021-04-29] CHR StartupUrls: Default -> "hxxp://www.google.com/" CHR Extension: (Slides) - C:\Users\François\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-04-27] CHR Extension: (Docs) - C:\Users\François\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2021-04-27] CHR Extension: (Google Drive) - C:\Users\François\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-04-27] CHR Extension: (Google Meet Grid View) - C:\Users\François\AppData\Local\Google\Chrome\User Data\Default\Extensions\bjkegbgpfgpikgkfidhcihhiflbjgfic [2020-05-21] CHR Extension: (YouTube) - C:\Users\François\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-04-27] CHR Extension: (Avira Password Manager) - C:\Users\François\AppData\Local\Google\Chrome\User Data\Default\Extensions\caljgklbbfbcjjanaijlacgncafpegll [2021-04-28] CHR Extension: (Avira Safe Shopping) - C:\Users\François\AppData\Local\Google\Chrome\User Data\Default\Extensions\ccbpbkebodcjkknkfkpmfeciinhidaeh [2021-04-28] CHR Extension: (Sheets) - C:\Users\François\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-04-27] CHR Extension: (Protection Web Avira) - C:\Users\François\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2021-04-28] CHR Extension: (Google Docs hors connexion) - C:\Users\François\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-04-27] CHR Extension: (AdBlock — le meilleur bloqueur de pubs) - C:\Users\François\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2021-04-12] CHR Extension: (Malwarebytes Browser Guard) - C:\Users\François\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2021-04-16] CHR Extension: (Google Meet Grid View) - C:\Users\François\AppData\Local\Google\Chrome\User Data\Default\Extensions\kklailfgofogmmdlhgmjgenehkjoioip [2020-06-22] CHR Extension: (SuperNova SWF Enabler) - C:\Users\François\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhmphnocemakkjdampibehejoaleebpo [2021-04-19] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\François\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-03] CHR Extension: (Gmail) - C:\Users\François\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-04-27] CHR Extension: (Chrome Media Router) - C:\Users\François\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-04-23] CHR Profile: C:\Users\François\AppData\Local\Google\Chrome\User Data\Guest Profile [2021-04-22] CHR Profile: C:\Users\François\AppData\Local\Google\Chrome\User Data\System Profile [2021-04-22] CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] CHR HKU\S-1-5-21-3013798796-1205852533-1603031028-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mhmphnocemakkjdampibehejoaleebpo] CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] CHR HKLM-x32\...\Chrome\Extension: [ccbpbkebodcjkknkfkpmfeciinhidaeh] CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.) R2 AntivirProtectedService; C:\Program Files (x86)\Avira\Antivirus\ProtectedService.exe [537472 2021-03-11] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8788392 2021-04-09] (Microsoft Corporation -> Microsoft Corporation) R2 DragonCenter_Service; C:\Program Files (x86)\MSI\Dragon Center\DragonCenter_Service.exe [134304 2018-09-07] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [443344 2020-05-25] (Canon Inc. -> ) R2 Killer Network Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe [2484992 2018-09-04] (Rivet Networks LLC -> Rivet Networks) R2 MajIndexEducationService; C:\Program Files (x86)\Index Education\Mise a jour automatique\ServiceMiseAJourIndex.exe [3326056 2020-07-21] (INDEX EDUCATION SASU -> Index Education) R3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7456464 2021-03-02] (Malwarebytes Inc -> Malwarebytes) R2 Micro Star SCM; C:\Program Files (x86)\SCM\MSIService.exe [168048 2018-06-22] (Micro-Star International CO., LTD. -> Micro-Star International Co., Ltd.) R2 MsiTrueColorService; C:\Program Files\Portrait Displays\MSI True Color\MsiTrueColorService.exe [180520 2016-09-10] (PORTRAIT DISPLAYS, INC. -> Portrait Displays, Inc.) R2 MSI_SuperCharger; C:\Program Files (x86)\MSI\SUPER CHARGER\ChargeService.exe [162800 2014-02-21] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2103.7-0\NisSrv.exe [2624104 2021-04-11] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2103.7-0\MsMpEng.exe [128376 2021-04-11] (Microsoft Windows Publisher -> Microsoft Corporation) S2 xTendSoftAPService; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\xTendSoftAPService.exe [72952 2018-09-04] (Rivet Networks LLC -> CloudBees, Inc.) R2 xTendUtilityService; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\xTendUtilityService.exe [72952 2018-09-04] (Rivet Networks LLC -> CloudBees, Inc.) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R0 avdevprot; C:\WINDOWS\System32\DRIVERS\avdevprot.sys [78936 2019-06-07] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) S0 avelam; C:\WINDOWS\System32\drivers\avelam.sys [22336 2019-03-20] (Microsoft Windows Early Launch Anti-malware Publisher -> Avira Operations GmbH & Co. KG) R0 avusbflt; C:\WINDOWS\System32\Drivers\avusbflt.sys [45472 2019-03-20] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Fichier non signé] R3 e2xw10x64; C:\WINDOWS\System32\drivers\e2xw10x64.sys [159712 2018-09-07] (WDKTestCert SYSTEM,130948585914967575 -> Qualcomm Atheros, Inc.) R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [107328 2018-01-19] (ESET, spol. s r.o. -> ESET) S4 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [50744 2018-01-19] (ESET, spol. s r.o. -> ESET) S4 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [81880 2018-01-19] (ESET, spol. s r.o. -> ESET) R3 KfeCoSvc; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KfeCo10X64.sys [154752 2018-09-04] (Rivet Networks LLC -> Rivet Networks, LLC.) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [220752 2021-04-28] (Malwarebytes Inc -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [19912 2021-03-02] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248992 2021-04-28] (Malwarebytes Inc -> Malwarebytes) R3 NTIOLib_1_0_3; C:\Program Files (x86)\MSI\SUPER CHARGER\NTIOLib_X64.sys [13368 2012-10-26] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) S3 ssdevfactory; C:\WINDOWS\System32\drivers\ssdevfactory.sys [46776 2019-05-24] (SteelSeries ApS -> ) S3 ssps2; C:\WINDOWS\System32\drivers\ssps2.sys [40704 2018-06-25] (SteelSeries ApS -> ) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49560 2021-04-11] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [421088 2021-04-11] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [72928 2021-04-11] (Microsoft Windows -> Microsoft Corporation) R3 WINIO; C:\Program Files (x86)\MSI\Shortcut Manager\winio64.sys [15160 2013-05-24] (Micro-Star Int'l Co. Ltd. -> ) S4 nvvhci; \SystemRoot\System32\drivers\nvvhci.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-04-28 20:21 - 2021-04-28 20:21 - 000000000 ____D C:\Users\François\Desktop\FRST-OlderVersion 2021-04-28 20:20 - 2021-04-29 14:38 - 000484739 _____ C:\Users\François\Desktop\ZHPDiag.html 2021-04-28 19:56 - 2021-04-28 19:56 - 000001523 _____ C:\Users\François\Desktop\MBAM.txt 2021-04-28 19:11 - 2021-04-28 19:11 - 008534696 _____ (Malwarebytes) C:\Users\François\Desktop\adwcleaner_8.2 (1).exe 2021-04-28 13:50 - 2021-04-28 13:51 - 000000000 ____D C:\CrystalDiskInfo 2021-04-28 13:50 - 2021-04-28 13:50 - 000001600 _____ C:\Users\François\Desktop\CrystalDiskInfo.lnk 2021-04-28 13:49 - 2021-04-28 13:49 - 004707136 _____ (Crystal Dew World ) C:\Users\François\Downloads\CrystalDiskInfo8_11_2.exe 2021-04-28 13:39 - 2021-04-28 13:39 - 000000085 _____ C:\WINDOWS\wininit.ini 2021-04-28 13:18 - 2021-04-28 13:24 - 000539536 _____ C:\Users\François\Downloads\Wub.zip 2021-04-28 13:18 - 2021-04-28 13:18 - 001003898 _____ C:\Users\François\Downloads\Wub (1).zip 2021-04-28 13:04 - 2021-04-28 13:04 - 000000000 ____D C:\Users\François\AppData\Local\OneDrive 2021-04-28 12:38 - 2021-04-28 12:40 - 000241818 _____ C:\WINDOWS\ntbtlog.txt 2021-04-28 12:34 - 2021-04-28 12:34 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avira 2021-04-28 12:21 - 2021-04-28 12:21 - 003181960 _____ (Avira Operations GmbH & Co. KG) C:\Users\François\Desktop\avira_registry_cleaner_en.exe 2021-04-27 14:38 - 2021-04-27 14:38 - 000086266 _____ C:\Users\François\Desktop\Shortcut.txt 2021-04-27 14:35 - 2021-04-29 18:31 - 000061329 _____ C:\Users\François\Desktop\Addition.txt 2021-04-27 14:29 - 2021-04-29 19:31 - 000033766 _____ C:\Users\François\Desktop\FRST.txt 2021-04-27 14:27 - 2021-04-29 19:30 - 000000000 ____D C:\FRST 2021-04-27 14:27 - 2021-04-28 20:21 - 002298368 _____ (Farbar) C:\Users\François\Desktop\FRST64.exe 2021-04-27 14:26 - 2021-04-27 14:26 - 002298368 _____ (Farbar) C:\Users\François\Downloads\FRST64.exe 2021-04-27 14:10 - 2021-04-27 14:10 - 000000878 _____ C:\Users\François\Desktop\ZHPSuite.lnk 2021-04-27 14:07 - 2021-04-27 14:07 - 003468440 _____ (Nicolas Coolman) C:\Users\François\Desktop\ZHPSuite.exe 2021-04-27 12:15 - 2021-04-27 12:15 - 000419949 _____ C:\Users\François\Desktop\test.txt 2021-04-27 11:51 - 2021-04-27 12:16 - 000000879 _____ C:\Users\François\Desktop\ZHPFix.txt 2021-04-27 11:46 - 2021-04-27 11:47 - 000000871 _____ C:\Users\François\Desktop\ZHPFix2.lnk 2021-04-27 11:45 - 2021-04-27 11:45 - 001706136 _____ (Nicolas Coolman) C:\Users\François\Downloads\ZHPFix2.exe 2021-04-27 11:21 - 2021-04-28 12:47 - 000248992 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2021-04-27 11:21 - 2021-03-02 09:24 - 000019912 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys 2021-04-27 11:19 - 2021-04-27 11:19 - 002078632 _____ (Malwarebytes) C:\Users\François\Downloads\MBSetup (1).exe 2021-04-27 11:14 - 2021-04-27 11:16 - 000000000 ____D C:\Users\François\Desktop\AdwCleaner 2021-04-27 11:14 - 2021-04-27 11:14 - 008534696 _____ (Malwarebytes) C:\Users\François\Downloads\adwcleaner_8.2.exe 2021-04-27 11:12 - 2021-04-28 19:07 - 000066457 _____ C:\Users\François\Desktop\ZHPCleaner (R).txt 2021-04-27 11:12 - 2021-04-27 11:12 - 000009021 _____ C:\Users\François\Desktop\ZHPCleaner (R).html 2021-04-27 11:09 - 2021-04-28 19:01 - 000065594 _____ C:\Users\François\Desktop\ZHPCleaner (S).txt 2021-04-27 11:09 - 2021-04-27 11:09 - 000008721 _____ C:\Users\François\Desktop\ZHPCleaner (S).html 2021-04-27 10:58 - 2021-04-27 10:58 - 003326616 _____ (Nicolas Coolman) C:\Users\François\Downloads\ZHPCleaner (1).exe 2021-04-27 10:58 - 2021-04-27 10:58 - 000000888 _____ C:\Users\François\Desktop\ZHPCleaner.lnk 2021-04-27 10:49 - 2021-04-29 14:37 - 000396648 _____ C:\Users\François\Desktop\ZHPDiag.txt 2021-04-27 10:40 - 2021-04-29 14:37 - 000000000 ____D C:\Users\François\AppData\Roaming\ZHP 2021-04-27 10:40 - 2021-04-27 14:10 - 000000000 ____D C:\Users\François\AppData\Local\ZHP 2021-04-27 10:40 - 2021-04-27 11:36 - 000000878 _____ C:\Users\François\Desktop\ZHPDiag.lnk 2021-04-27 10:40 - 2021-04-27 10:40 - 003274392 _____ (Nicolas Coolman) C:\Users\François\Downloads\ZHPDiag3.exe 2021-04-26 16:58 - 2021-04-26 16:58 - 000000000 ____D C:\Users\Public\Security Sessions 2021-04-26 16:56 - 2021-04-26 16:56 - 000003374 _____ C:\WINDOWS\system32\Tasks\Avira_Antivirus_Systray 2021-04-26 16:56 - 2021-04-26 16:56 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_avusbflt_01011.Wdf 2021-04-26 16:56 - 2021-03-25 18:05 - 000209744 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys 2021-04-26 16:56 - 2021-02-09 19:03 - 000199312 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys 2021-04-26 16:56 - 2019-06-07 15:09 - 000078936 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avdevprot.sys 2021-04-26 16:56 - 2019-03-20 19:50 - 000089736 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avnetflt.sys 2021-04-26 16:56 - 2019-03-20 19:50 - 000046704 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avkmgr.sys 2021-04-26 16:56 - 2019-03-20 19:50 - 000045472 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avusbflt.sys 2021-04-26 16:56 - 2019-03-20 19:50 - 000022336 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avelam.sys 2021-04-26 16:51 - 2021-04-26 16:58 - 000000000 ____D C:\Users\François\AppData\Local\Avira 2021-04-26 16:50 - 2021-04-26 16:50 - 004564000 _____ (Avira Operations GmbH & Co. KG) C:\Users\François\Downloads\avira_fr_sptl1_1638c571f295b285__phpws.exe 2021-04-26 15:37 - 2021-04-26 15:37 - 000000000 ____D C:\Users\François\AppData\Local\Safer-Networking Ltd 2021-04-26 15:36 - 2021-04-26 15:36 - 000000000 ____D C:\WINDOWS\system32\Tasks\Safer-Networking 2021-04-26 15:35 - 2021-04-28 13:43 - 000000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2021-04-26 15:35 - 2021-04-28 13:39 - 000000000 ____D C:\ProgramData\Spybot - Search & Destroy 2021-04-26 15:30 - 2021-04-26 15:31 - 069300040 _____ (Safer-Networking Ltd. ) C:\Users\François\Downloads\spybotsd-2.8.68.0.exe 2021-04-26 15:09 - 2021-04-26 15:09 - 000000000 ____D C:\Users\François\Doctor Web 2021-04-26 15:07 - 2021-04-26 15:07 - 003326616 _____ (Nicolas Coolman) C:\Users\François\Downloads\ZHPCleaner.exe 2021-04-26 15:06 - 2021-04-26 15:07 - 244385320 _____ C:\Users\François\Downloads\de6jsqcu.exe 2021-04-26 13:58 - 2021-04-28 19:18 - 109576192 _____ C:\WINDOWS\system32\config\SOFTWARE 2021-04-26 13:49 - 2021-04-26 13:58 - 000000000 ____D C:\WINDOWS\Microsoft Antimalware 2021-04-25 17:06 - 2021-04-25 17:06 - 000000847 _____ C:\Users\Public\Desktop\Speccy.lnk 2021-04-25 17:06 - 2021-04-25 17:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy 2021-04-25 17:06 - 2021-04-25 17:06 - 000000000 ____D C:\Program Files\Speccy 2021-04-25 17:05 - 2021-04-25 17:05 - 008234296 _____ (Piriform Software Ltd) C:\Users\François\Downloads\spsetup132.exe 2021-04-25 10:05 - 2021-04-28 12:38 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job 2021-04-25 09:15 - 2021-04-28 12:38 - 000220752 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys 2021-04-23 11:25 - 2021-04-23 11:25 - 000025979 _____ C:\Users\François\Downloads\0660026V-CAP (1).pdf 2021-04-23 11:25 - 2021-04-23 11:25 - 000005796 _____ C:\Users\François\Downloads\0660026V-CAP-liste (1).pdf 2021-04-23 11:24 - 2021-04-23 11:24 - 000005796 _____ C:\Users\François\Downloads\0660026V-CAP-liste.pdf 2021-04-23 11:23 - 2021-04-23 11:23 - 000025979 _____ C:\Users\François\Downloads\0660026V-CAP.pdf 2021-04-23 11:22 - 2021-04-23 11:22 - 000046088 _____ C:\Users\François\Downloads\Convocations session examen _ CAP - 2021-06 CAP - LP LYCEE DES METIERS ALFRED SAUVY.eml 2021-04-22 15:10 - 2021-04-22 15:10 - 000000000 ____D C:\WINDOWS\system32\lxss 2021-04-22 15:06 - 2021-04-13 11:26 - 001435856 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2021-04-22 15:06 - 2021-04-13 11:26 - 001435856 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2021-04-22 15:06 - 2021-04-13 11:25 - 001855184 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2021-04-22 15:06 - 2021-04-13 11:25 - 001855184 _____ C:\WINDOWS\system32\vulkaninfo.exe 2021-04-22 15:06 - 2021-04-13 11:25 - 001452312 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2021-04-22 15:06 - 2021-04-13 11:25 - 001191704 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2021-04-22 15:06 - 2021-04-13 11:25 - 001094864 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2021-04-22 15:06 - 2021-04-13 11:25 - 001094864 _____ C:\WINDOWS\system32\vulkan-1.dll 2021-04-22 15:06 - 2021-04-13 11:25 - 000948952 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2021-04-22 15:06 - 2021-04-13 11:25 - 000948952 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2021-04-22 15:05 - 2021-04-13 11:22 - 001514784 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2021-04-22 15:05 - 2021-04-13 11:22 - 001166112 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2021-04-22 15:05 - 2021-04-13 11:22 - 000715552 _____ C:\WINDOWS\system32\nvofapi64.dll 2021-04-22 15:05 - 2021-04-13 11:22 - 000675096 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll 2021-04-22 15:05 - 2021-04-13 11:22 - 000575776 _____ C:\WINDOWS\SysWOW64\nvofapi.dll 2021-04-22 15:05 - 2021-04-13 11:22 - 000564000 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll 2021-04-22 15:05 - 2021-04-13 11:21 - 002106144 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2021-04-22 15:05 - 2021-04-13 11:21 - 001590552 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2021-04-22 15:05 - 2021-04-13 11:21 - 000811800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2021-04-22 15:05 - 2021-04-13 11:21 - 000656152 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2021-04-22 15:05 - 2021-04-13 11:20 - 008317216 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2021-04-22 15:05 - 2021-04-13 11:20 - 007434008 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2021-04-22 15:05 - 2021-04-13 11:20 - 004795184 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2021-04-22 15:05 - 2021-04-13 11:20 - 002823456 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2021-04-22 15:05 - 2021-04-13 11:20 - 001730848 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6446611.dll 2021-04-22 15:05 - 2021-04-13 11:20 - 001490208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6446611.dll 2021-04-22 15:05 - 2021-04-13 11:17 - 006159176 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2021-04-19 13:27 - 2021-04-19 13:27 - 000000000 ____D C:\Users\François\AppData\Local\TacticsTechnology 2021-04-19 13:26 - 2021-04-19 13:27 - 001264088 _____ C:\Users\François\Downloads\SuperNovaSetup.exe 2021-04-16 23:43 - 2021-04-16 23:43 - 000036277 _____ C:\Users\François\Downloads\the.final.stand.(2020).eng.1cd.(8622308).zip 2021-04-16 00:06 - 2021-04-16 00:06 - 000000218 _____ C:\Users\François\AppData\Local\recently-used.xbel 2021-04-15 22:31 - 2021-04-15 22:31 - 000020299 _____ C:\Users\François\Downloads\nobody.(2021).eng.1cd.(8627220).zip 2021-04-15 22:30 - 2021-04-15 22:30 - 000022690 _____ C:\Users\François\Downloads\nobody.(2021).fre.1cd.(8627473).zip 2021-04-15 21:20 - 2021-04-15 21:20 - 000011357 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2021-04-15 21:18 - 2021-04-15 21:18 - 001823304 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2021-04-15 21:18 - 2021-04-15 21:18 - 000231248 _____ C:\WINDOWS\system32\containerdevicemanagement.dll 2021-04-15 20:24 - 2021-04-15 20:24 - 000021402 _____ C:\Users\François\Downloads\The Razor's Edge (1984) [1080p] [WEBRip] [YTS.MX].torrent 2021-04-15 20:15 - 2021-04-15 20:15 - 000021328 _____ C:\Users\François\Downloads\The Final Stand (2020) [1080p] [BluRay] [5.1] [YTS.MX].torrent 2021-04-15 20:13 - 2021-04-15 20:13 - 000021584 _____ C:\Users\François\Downloads\The Ritual (2017) [1080p] [BluRay] [5.1] [YTS.MX].torrent 2021-04-15 20:12 - 2021-04-15 20:12 - 000021310 _____ C:\Users\François\Downloads\Nobody (2021) [1080p] [WEBRip] [5.1] [YTS.MX].torrent 2021-04-15 16:05 - 2021-04-15 16:05 - 000027575 _____ C:\Users\François\Downloads\Répartition Lettres-Histoire (6).xlsx 2021-04-13 12:40 - 2021-04-13 12:49 - 000000000 ___HD C:\ProgramData\CanonIJMIG 2021-04-13 12:40 - 2021-04-13 12:40 - 000759148 _____ C:\Users\François\Documents\IMG_20210413_0001.pdf 2021-04-13 12:39 - 2021-04-13 12:40 - 000000000 ___HD C:\ProgramData\CanonIJScan 2021-04-11 17:25 - 2021-04-11 17:25 - 000027497 _____ C:\Users\François\Downloads\Répartition Lettres-Histoire (5).xlsx 2021-04-11 16:23 - 2021-04-11 16:23 - 000000000 ___HD C:\ProgramData\CanonIJQuickMenu 2021-04-11 16:22 - 2021-04-11 16:22 - 000000234 _____ C:\Users\Public\Desktop\Manuel en ligne Canon TS5100 series.url 2021-04-11 15:47 - 2021-04-11 15:47 - 000002108 _____ C:\Users\Public\Desktop\Canon Quick Menu.lnk 2021-04-11 15:47 - 2021-04-11 15:47 - 000000000 ____D C:\ProgramData\CanonIJWSpt 2021-04-11 15:42 - 2021-04-11 15:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon TS5100 series Manuel à l'écran 2021-04-11 15:39 - 2021-04-19 12:50 - 000000000 ____D C:\Users\François\AppData\Roaming\Canon 2021-04-11 15:28 - 2021-04-11 15:48 - 000000000 ____D C:\Program Files\Canon 2021-04-11 15:28 - 2021-04-11 15:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities 2021-04-11 15:28 - 2017-02-27 09:14 - 000347136 _____ (CANON INC.) C:\WINDOWS\SysWOW64\CNC_DQL.dll 2021-04-11 15:28 - 2016-11-16 10:22 - 000097280 _____ C:\WINDOWS\SysWOW64\CNC1825D.TBL 2021-04-11 15:28 - 2008-08-25 18:02 - 000015872 _____ (CANON INC.) C:\WINDOWS\SysWOW64\CNHMCA.dll 2021-04-11 15:27 - 2021-04-11 15:27 - 000000000 ___HD C:\ProgramData\CanonBJ 2021-04-11 15:26 - 2017-03-23 05:00 - 001302016 _____ (CANON INC.) C:\WINDOWS\system32\CNMLMDQ.DLL 2021-04-11 15:25 - 2021-04-11 15:26 - 000000000 ___HD C:\Program Files\CanonBJ 2021-04-11 15:21 - 2021-04-13 12:49 - 000000000 ____D C:\ProgramData\CanonIJPLM 2021-04-11 15:21 - 2021-04-11 15:47 - 000000000 ____D C:\Program Files (x86)\Canon 2021-04-11 15:21 - 2021-04-11 15:21 - 000000000 ____D C:\ProgramData\Canon 2021-04-11 15:12 - 2021-04-11 15:12 - 019332768 _____ C:\Users\François\Downloads\win-ts5100-1_1-n_mcd.exe 2021-04-10 10:32 - 2021-04-10 10:32 - 000027465 _____ C:\Users\François\Downloads\Répartition Lettres-Histoire (4).xlsx 2021-04-10 10:29 - 2021-04-10 10:29 - 000027453 _____ C:\Users\François\Downloads\Répartition Lettres-Histoire (3).xlsx 2021-04-09 12:28 - 2021-04-09 12:28 - 000027165 _____ C:\Users\François\Downloads\Répartition Lettres-Histoire (2).xlsx 2021-04-08 22:06 - 2021-04-08 22:06 - 000027506 _____ C:\Users\François\Downloads\Répartition Lettres-Histoire (1).xlsx 2021-04-08 22:00 - 2021-04-28 20:49 - 000000000 ____D C:\Users\François\Documents\Fichiers Outlook 2021-04-08 21:59 - 2021-04-08 21:59 - 000094799 _____ C:\Users\François\Downloads\ANNULE ET REMPLACE Répartition Lettres-Histoire.xlsx (1).eml 2021-04-08 21:57 - 2021-04-08 21:57 - 000027506 _____ C:\Users\François\Downloads\Répartition Lettres-Histoire.xlsx 2021-04-07 11:26 - 2021-04-07 11:26 - 020951045 _____ C:\Users\François\Downloads\CastleAttack2.zip 2021-04-07 11:23 - 2021-04-07 11:23 - 021503153 _____ C:\Users\François\Downloads\ca2_install (2).zip 2021-04-07 11:23 - 2021-04-07 11:23 - 021503153 _____ C:\Users\François\Downloads\ca2_install (1).zip 2021-04-07 11:17 - 2021-04-07 11:17 - 021503153 _____ C:\Users\François\Downloads\CA2_install.zip 2021-04-06 16:25 - 2021-04-06 16:25 - 000353208 _____ C:\Users\François\Downloads\C__CMI_IHC59v4.cas.pdf 2021-04-06 16:25 - 2021-04-06 16:25 - 000353208 _____ C:\Users\François\Downloads\C__CMI_IHC59v4.cas (1).pdf 2021-04-06 15:58 - 2021-04-06 15:58 - 001267396 _____ C:\Users\François\Downloads\2018_dnb_pro_fr_guyane_grammaire_comprehension.pdf 2021-04-06 14:35 - 2021-04-06 14:35 - 002247377 _____ C:\Users\François\Downloads\2018_BCP_fr_antilles_2018.pdf 2021-04-06 14:34 - 2021-04-06 14:34 - 000034500 _____ C:\Users\François\Downloads\2018_BCP_fr_antilles_2018_corrige.pdf 2021-04-05 23:13 - 2021-04-05 23:13 - 000022040 _____ C:\Users\François\Downloads\the.satanic.rites.of.dracula.(1973).eng.1cd.(4715833).zip 2021-04-03 22:46 - 2021-04-03 22:46 - 000020871 _____ C:\Users\François\Downloads\knockin-on-heavens-door-1997-english-yify-256058.zip 2021-04-02 22:15 - 2021-04-02 22:15 - 000033850 _____ C:\Users\François\Downloads\SUBDL.com__the.devils.brigade553904.zip 2021-04-01 21:28 - 2021-04-01 21:28 - 000067839 _____ C:\Users\François\Downloads\Knockin' on Heaven's Door (1997) [1080p] [BluRay] [5.1] [YTS.MX].torrent 2021-04-01 21:24 - 2021-04-01 21:24 - 000051066 _____ C:\Users\François\Downloads\Safety Last! (1923) [1080p] [BluRay] [YTS.MX].torrent 2021-04-01 21:21 - 2021-04-01 21:21 - 000021325 _____ C:\Users\François\Downloads\Kung Fury (2015) [1080p] [WEBRip] [YTS.MX].torrent 2021-04-01 21:11 - 2021-04-01 21:11 - 000021388 _____ C:\Users\François\Downloads\Decapitarium (2021) [720p] [WEBRip] [YTS.MX].torrent ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-04-29 10:38 - 2020-11-13 21:44 - 000003362 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3013798796-1205852533-1603031028-1001 2021-04-29 10:38 - 2020-11-13 21:08 - 000002459 _____ C:\Users\François\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-04-29 10:38 - 2015-12-10 21:01 - 000000000 ___RD C:\Users\François\OneDrive 2021-04-29 09:10 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2021-04-29 09:02 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-04-29 09:02 - 2015-12-26 05:43 - 000000000 ____D C:\Program Files\CCleaner 2021-04-29 09:01 - 2015-12-12 22:20 - 000000000 ____D C:\Users\François\AppData\Local\CrashDumps 2021-04-29 08:59 - 2017-05-29 11:11 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2021-04-29 08:59 - 2015-12-10 20:51 - 000000000 __SHD C:\Users\François\IntelGraphicsProfiles 2021-04-28 23:00 - 2016-09-30 04:47 - 000000000 ____D C:\ProgramData\NVIDIA 2021-04-28 22:07 - 2016-01-29 20:43 - 000000000 ____D C:\Users\François\Documents\BloodBowl2 2021-04-28 21:00 - 2015-12-26 15:39 - 000000000 ____D C:\Program Files (x86)\Steam 2021-04-28 19:19 - 2020-11-13 21:44 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2021-04-28 19:19 - 2020-11-13 20:59 - 000008192 ___SH C:\DumpStack.log.tmp 2021-04-28 19:18 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2021-04-28 18:25 - 2015-12-10 20:55 - 000000000 ____D C:\Users\François\AppData\Local\NVIDIA Corporation 2021-04-28 13:36 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF 2021-04-28 13:36 - 2017-05-29 11:11 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2021-04-28 13:36 - 2017-05-29 11:11 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2021-04-28 13:36 - 2015-12-10 20:54 - 000000000 ____D C:\Users\François\AppData\Local\NVIDIA 2021-04-28 13:36 - 2015-05-13 01:27 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2021-04-28 13:29 - 2015-05-13 01:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI 2021-04-28 13:29 - 2015-05-13 01:45 - 000000000 ____D C:\Program Files (x86)\MSI 2021-04-28 13:29 - 2015-05-13 01:27 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2021-04-28 13:27 - 2021-01-22 20:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Deluge 2021-04-28 13:23 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy 2021-04-28 12:52 - 2015-12-13 18:09 - 000000000 ____D C:\ProgramData\Avira 2021-04-28 12:52 - 2015-12-13 18:09 - 000000000 ____D C:\Program Files (x86)\Avira 2021-04-28 12:51 - 2015-12-13 18:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2021-04-28 11:25 - 2014-11-06 18:16 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2021-04-27 14:59 - 2019-09-17 23:01 - 000000000 ____D C:\ProgramData\IndexEducation 2021-04-27 12:23 - 2015-12-26 05:43 - 000001058 _____ C:\Users\François\Desktop\CCleaner.lnk 2021-04-27 11:23 - 2021-03-02 09:26 - 000002031 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2021-04-27 11:21 - 2021-03-02 09:26 - 000002043 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2021-04-27 11:21 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2021-04-27 09:05 - 2020-11-13 21:08 - 000000000 ____D C:\Users\François 2021-04-26 16:36 - 2020-11-13 20:59 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2021-04-26 16:17 - 2017-01-28 14:08 - 000000000 ____D C:\Users\François\Desktop\clé usb titine 2021-04-26 14:59 - 2020-11-13 21:23 - 001772726 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2021-04-26 14:59 - 2019-12-07 16:49 - 000793016 _____ C:\WINDOWS\system32\perfh00C.dat 2021-04-26 14:59 - 2019-12-07 16:49 - 000150146 _____ C:\WINDOWS\system32\perfc00C.dat 2021-04-26 14:52 - 2018-05-19 22:40 - 000000000 ____D C:\Users\François\AppData\Roaming\uTorrent 2021-04-26 14:20 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2021-04-25 17:09 - 2018-07-10 11:32 - 000002146 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2021-04-24 09:50 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2021-04-22 21:39 - 2020-08-24 23:35 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2021-04-22 16:55 - 2017-12-03 16:37 - 000000000 ____D C:\Users\François\AppData\Local\Packages 2021-04-22 15:12 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Help 2021-04-22 09:17 - 2020-11-13 21:44 - 000003588 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2021-04-22 09:17 - 2020-11-13 21:44 - 000003464 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2021-04-20 17:14 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2021-04-17 10:14 - 2015-12-17 00:18 - 000000000 ____D C:\Users\François\AppData\Roaming\vlc 2021-04-16 14:59 - 2020-11-13 21:44 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2021-04-16 14:31 - 2020-11-13 20:59 - 000435336 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2021-04-16 14:27 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2021-04-16 14:27 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2021-04-16 14:27 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources 2021-04-16 14:27 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup 2021-04-16 14:27 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2021-04-16 14:27 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV 2021-04-16 14:27 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2021-04-16 14:27 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\et-EE 2021-04-16 14:27 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\es-MX 2021-04-16 14:27 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning 2021-04-16 14:27 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2021-04-16 14:27 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2021-04-16 00:06 - 2021-01-22 20:46 - 000000000 ____D C:\Users\François\AppData\Roaming\deluge 2021-04-15 21:17 - 2020-11-13 21:04 - 002877440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2021-04-15 20:08 - 2015-12-14 00:21 - 000000000 ____D C:\WINDOWS\system32\MRT 2021-04-15 19:59 - 2015-12-14 00:21 - 131963968 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2021-04-13 12:48 - 2016-01-05 13:31 - 000000000 ____D C:\Users\François\Documents\Education 2021-04-13 11:17 - 2018-11-28 18:29 - 007212248 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2021-04-13 01:48 - 2018-11-28 18:29 - 000063943 _____ C:\WINDOWS\system32\nvinfo.pb 2021-04-12 21:48 - 2017-05-29 11:11 - 005666672 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2021-04-12 21:48 - 2017-05-29 11:11 - 002636656 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll 2021-04-12 21:48 - 2017-05-29 11:11 - 001758064 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll 2021-04-12 21:48 - 2017-05-29 11:11 - 000990064 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll 2021-04-12 21:48 - 2017-05-29 11:11 - 000120176 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll 2021-04-12 21:48 - 2017-05-29 11:11 - 000082288 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll 2021-04-11 17:23 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\NDF 2021-04-11 15:28 - 2019-12-07 11:14 - 000000000 __RSD C:\WINDOWS\Media 2021-04-11 11:54 - 2018-03-05 01:14 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2021-04-09 08:50 - 2021-03-02 09:25 - 000199128 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys 2021-04-07 17:41 - 2017-05-29 11:11 - 009527077 _____ C:\WINDOWS\system32\nvcoproc.bin 2021-04-07 11:26 - 2016-01-06 00:48 - 000000000 ____D C:\Users\François\AppData\Roaming\Macromedia ==================== Fichiers à la racine de certains dossiers ======== 2018-07-29 20:07 - 2018-07-29 20:07 - 001065984 _____ () C:\Users\François\AppData\Local\file__0.localstorage 2021-04-16 00:06 - 2021-04-16 00:06 - 000000218 _____ () C:\Users\François\AppData\Local\recently-used.xbel ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================