Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 05-04-2021 Exécuté par Nicole (administrateur) sur NICOLE-PC (Acer, inc. TravelMate 7730) (06-04-2021 17:34:28) Exécuté depuis C:\Users\Nicole\Desktop Profils chargés: Nicole Platform: Windows 7 Home Premium Service Pack 1 (X64) Langue: Français (France) Navigateur par défaut: FF Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.72\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.72\GoogleCrashHandler64.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation) C:\Windows\System32\hkcmd.exe (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation) C:\Windows\System32\igfxpers.exe (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation) C:\Windows\System32\igfxtray.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe <7> (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_IATIHJE.EXE (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1353680 2016-11-14] (Microsoft Corporation -> Microsoft Corporation) HKLM\...\Run: [IgfxTray] => C:\Windows\system32\igfxtray.exe [159232 2009-09-02] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation) HKLM\...\Run: [HotKeysCmds] => C:\Windows\system32\hkcmd.exe [380928 2009-09-02] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation) HKLM\...\Run: [Persistence] => C:\Windows\system32\igfxpers.exe [358912 2009-09-02] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation) HKU\S-1-5-21-4246615447-4135047367-3922691901-1000\...\Run: [EPLTarget\P0000000000000000] => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIHJE.EXE [283232 2012-02-29] (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) HKU\S-1-5-21-4246615447-4135047367-3922691901-1000\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [91016568 2020-12-18] (Skype Software Sarl -> Skype Technologies S.A.) HKU\S-1-5-21-4246615447-4135047367-3922691901-1000\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Nicole\AppData\Local\Microsoft\Teams\Update.exe [2453720 2021-03-12] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2016-10-02] (Microsoft Windows -> Microsoft Corporation) HKLM\...\Windows x64\Print Processors\Canon MP495 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDA9.DLL [30208 2012-03-14] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Windows x64\Print Processors\hpcpp190: C:\Windows\System32\spool\prtprocs\x64\hpcpp190.dll [651176 2016-08-26] (HP Inc. -> HP Inc.) HKLM\...\Print\Monitors\Canon BJ Language Monitor MP495 series: C:\Windows\system32\CNMLMA9.DLL [385024 2012-03-14] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\EPSON SX130 Series 64MonitorBE: C:\Windows\system32\E_ILMHJE.DLL [120320 2011-04-20] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) HKLM\...\Print\Monitors\HP Universal Print Monitor: C:\Windows\system32\HPMPW081.DLL [127912 2016-08-26] (HP Inc. -> HP Inc.) HKLM\...\Print\Monitors\HPMLM190: C:\Windows\system32\hpmlm190.dll [310512 2016-08-26] (HP Inc. -> HP Inc.) HKLM\...\Print\Monitors\pdfcmon: C:\Windows\system32\pdfcmon.dll [117248 2018-02-28] (pdfforge GmbH) [Fichier non signé] ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {27AE90D2-B67E-4AE4-B132-69A94CA4BAAE} - System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [696816 2021-03-26] (Mozilla Corporation -> Mozilla Foundation) Task: {42B2ECC1-2961-43B2-8167-FA3354CFC49D} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_465_Plugin.exe [1504312 2020-12-09] (Adobe Inc. -> Adobe) Task: {4AB9C897-F679-402B-BFAB-6B8BBA1C2CB3} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-09] (Adobe Inc. -> Adobe) Task: {4E46F8AE-4C5C-4FA8-B382-ADD4B81AC16F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2016-10-20] (Google Inc -> Google Inc.) Task: {7A3C6FC8-6F45-4301-B47C-E3775A669998} - System32\Tasks\G2MUpdateTask-S-1-5-21-4246615447-4135047367-3922691901-1000 => C:\Users\Nicole\AppData\Local\GoToMeeting\19598\g2mupdate.exe [31320 2021-04-05] (LogMeIn, Inc. -> LogMeIn, Inc.) Task: {7D6358D9-F813-4E8B-B7BE-FF8FA6FA72AD} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2016-10-20] (Google Inc -> Google Inc.) Task: {A1CEE82C-83C3-4601-A56A-4E05395DBB3C} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => c:\Program Files\Microsoft Security Client\\MpCmdRun.exe [410784 2016-11-14] (Microsoft Corporation -> Microsoft Corporation) Task: {AAA570D2-3BA9-45AF-B931-F0378EE3E352} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.) Task: {D298B9CE-E49F-45C6-AB36-686E85E87804} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [6868696 2016-08-26] (Piriform Ltd -> Piriform Ltd) Task: {EFAEB4D0-54CD-4280-8337-CFA50233323B} - System32\Tasks\G2MUploadTask-S-1-5-21-4246615447-4135047367-3922691901-1000 => C:\Users\Nicole\AppData\Local\GoToMeeting\19598\g2mupload.exe [31320 2021-04-05] (LogMeIn, Inc. -> LogMeIn, Inc.) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\Windows\Tasks\G2MUpdateTask-S-1-5-21-4246615447-4135047367-3922691901-1000.job => C:\Users\Nicole\AppData\Local\GoToMeeting\19598\g2mupdate.exe Task: C:\Windows\Tasks\G2MUploadTask-S-1-5-21-4246615447-4135047367-3922691901-1000.job => C:\Users\Nicole\AppData\Local\GoToMeeting\19598\g2mupload.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{15F8540D-2E35-4459-B83A-4F41D2EFFCE4}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{87540C40-AA1F-46B0-9B1C-B95D712F101F}: [DhcpNameServer] 192.168.1.1 FireFox: ======== FF DefaultProfile: hshh6z2y.default FF ProfilePath: C:\Users\Nicole\AppData\Roaming\Mozilla\Firefox\Profiles\hshh6z2y.default [2021-04-06] FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_465.dll [2020-12-09] (Adobe Inc. -> ) FF Plugin: @microsoft.com/GENUINE -> disabled [Pas de fichier] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_465.dll [2020-12-09] (Adobe Inc. -> ) FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Pas de fichier] FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-03-06] (Adobe Inc. -> Adobe Systems Inc.) ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.) S3 AdobeFlashPlayerUpdateSvc; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-09] (Adobe Inc. -> Adobe) S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [Fichier non signé] R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [119864 2016-11-14] (Microsoft Corporation -> Microsoft Corporation) R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [50688 2016-06-15] (HP Inc.) [Fichier non signé] R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [361816 2016-11-14] (Microsoft Corporation -> Microsoft Corporation) R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [66048 2016-06-15] (HP Inc.) [Fichier non signé] R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12727576 2021-02-17] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2016-10-02] (Microsoft Windows -> Microsoft Corporation) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [295000 2016-08-25] (Microsoft Corporation -> Microsoft Corporation) R3 NETw5s64; C:\Windows\System32\DRIVERS\NETw5s64.sys [6952960 2009-09-15] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation) R3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [135928 2016-08-25] (Microsoft Corporation -> Microsoft Corporation) R3 SrvHsfHDA; C:\Windows\System32\DRIVERS\VSTAZL6.SYS [292864 2009-06-10] (Microsoft Windows -> Conexant Systems, Inc.) R3 SrvHsfV92; C:\Windows\System32\DRIVERS\VSTDPV6.SYS [1485312 2009-06-10] (Microsoft Windows -> Conexant Systems, Inc.) R3 SrvHsfWinac; C:\Windows\System32\DRIVERS\VSTCNXT6.SYS [740864 2009-06-10] (Microsoft Windows -> Conexant Systems, Inc.) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Trois mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-04-06 17:34 - 2021-04-06 17:35 - 000011951 _____ C:\Users\Nicole\Desktop\FRST.txt 2021-04-06 17:34 - 2021-04-06 17:35 - 000000000 ____D C:\FRST 2021-04-06 17:32 - 2021-04-06 17:32 - 002298368 _____ (Farbar) C:\Users\Nicole\Downloads\FRST64.exe 2021-04-06 17:32 - 2021-04-06 17:32 - 002298368 _____ (Farbar) C:\Users\Nicole\Desktop\FRST64.exe 2021-04-06 17:06 - 2021-04-06 17:22 - 000232346 _____ C:\Users\Nicole\Desktop\ZHPDiag.txt 2021-04-06 16:54 - 2021-04-06 17:22 - 000000000 ____D C:\Users\Nicole\AppData\Roaming\ZHP 2021-04-06 16:54 - 2021-04-06 16:54 - 000000000 ____D C:\Users\Nicole\AppData\Local\ZHP 2021-04-06 16:54 - 2021-04-06 16:52 - 003467416 _____ (Nicolas Coolman) C:\Users\Nicole\Desktop\ZHPSuite.exe 2021-04-06 16:51 - 2021-04-06 16:52 - 003467416 _____ (Nicolas Coolman) C:\Users\Nicole\Downloads\ZHPSuite.exe 2021-04-02 03:49 - 2021-04-02 03:49 - 000092399 _____ C:\Users\Nicole\Desktop\2021-04-02-03-48-15-résultats.pdf 2021-04-02 03:47 - 2021-04-02 03:47 - 000084929 _____ C:\Users\Nicole\Desktop\2021-04-02-03-45-02-résultats.pdf 2021-04-02 03:45 - 2021-04-02 03:45 - 000080767 _____ C:\Users\Nicole\Downloads\2021-04-02-03-45-02-résultats.pdf 2021-03-31 07:12 - 2021-03-31 07:12 - 000088802 _____ C:\Users\Nicole\Desktop\mailDevis.pdf 2021-03-29 11:12 - 2021-03-29 11:12 - 000841916 _____ C:\Users\Nicole\Desktop\Mutualia-PapyMamie.pdf 2021-03-26 15:05 - 2021-03-26 15:05 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla 2021-03-26 09:32 - 2021-03-29 13:23 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox 2021-03-25 11:28 - 2021-03-25 11:28 - 000098473 _____ C:\Users\Nicole\Downloads\Avis_d_impot_2019_sur_les_revenus_2018.pdf 2021-03-25 09:17 - 2021-03-18 14:39 - 000016702 _____ C:\Users\Nicole\Desktop\Classeur1.xlsx 2021-03-15 18:24 - 2021-03-15 18:24 - 000005701 _____ C:\Users\Nicole\Downloads\mes-releves-elec.csv 2021-03-15 16:59 - 2021-03-15 16:59 - 000142225 _____ C:\Users\Nicole\Desktop\SeaBeaL Create Sublime Veste Agata Phildar - Free Tuto.html 2021-03-12 12:02 - 2021-03-12 12:02 - 000002309 _____ C:\Users\Nicole\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk 2021-03-12 12:02 - 2021-03-12 12:02 - 000000000 ____D C:\Users\Nicole\AppData\Roaming\Teams 2021-03-12 11:58 - 2021-03-12 12:03 - 000000000 ____D C:\Users\Nicole\AppData\Local\SquirrelTemp 2021-03-11 16:22 - 2021-03-11 16:22 - 001289522 _____ C:\Users\Nicole\Downloads\FW Projet garage + abri.zip 2021-02-28 19:25 - 2021-02-28 19:40 - 000000000 ____D C:\Users\Nicole\AppData\Local\TeamViewer 2021-02-28 19:23 - 2021-04-06 16:44 - 000000000 ____D C:\Program Files (x86)\TeamViewer 2021-02-28 19:23 - 2021-02-28 19:39 - 000000000 ____D C:\Users\Nicole\AppData\Roaming\TeamViewer 2021-02-28 19:23 - 2021-02-28 19:23 - 000001060 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer.lnk 2021-02-28 19:23 - 2021-02-28 19:23 - 000001048 _____ C:\ProgramData\Desktop\TeamViewer.lnk 2021-02-28 19:05 - 2021-02-28 19:06 - 029325064 _____ (TeamViewer Germany GmbH) C:\Users\Nicole\Downloads\TeamViewer_Setup.exe 2021-02-23 20:49 - 2021-02-23 20:49 - 000049065 _____ C:\Users\Nicole\Downloads\document(1).pdf 2021-02-23 20:07 - 2021-03-31 09:09 - 000000000 ____D C:\Users\Nicole\Desktop\JCB 2021-02-21 08:22 - 2021-02-21 08:23 - 000000000 ____D C:\Users\Nicole\Desktop\BELFORT 2021-02-21 08:18 - 2021-03-11 16:22 - 000000000 ____D C:\Users\Nicole\Desktop\travux-2020-garage 2021-02-21 08:12 - 2021-02-21 08:15 - 000000000 ____D C:\Users\Nicole\Desktop\maisonMAX 2021-02-21 08:12 - 2021-02-21 08:13 - 000000000 ____D C:\Users\Nicole\Desktop\maison 2021-02-21 08:09 - 2021-02-21 08:25 - 000000000 ____D C:\Users\Nicole\Desktop\chats 2021-02-19 15:57 - 2021-02-19 15:57 - 000032247 _____ C:\Users\Nicole\Downloads\récapitulatifmensuelvierge2021-01-21.xlsx 2021-02-10 10:17 - 2021-02-10 10:17 - 000053209 _____ C:\Users\Nicole\Downloads\DT05_ELEMENTS VARIABLES ELUS_2020_10.xlsx 2021-02-08 20:20 - 2021-03-30 09:17 - 000000000 ____D C:\Users\Nicole\Desktop\Combe-Vinouse 2021-02-03 10:07 - 2021-02-03 10:07 - 000083288 _____ (Zoom Video Communications, Inc.) C:\Users\Nicole\Downloads\Zoom_cm_ds_mPBmtP0wesWtZnTVF64rjtFc9x54dfPdEhHDq@+3arAldLdZAP73xQ_k6ccd3b0717e79ced_.exe 2021-02-03 08:07 - 2021-02-03 08:07 - 000651536 _____ C:\Users\Nicole\Downloads\TVA.zip 2021-01-30 15:47 - 2021-01-30 15:47 - 002022242 _____ C:\Users\Nicole\Downloads\reglement.pdf 2021-01-28 10:01 - 2021-01-28 10:01 - 000000000 ____D C:\Users\Nicole\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom 2021-01-27 20:13 - 2021-03-19 07:48 - 000076597 _____ C:\Users\Nicole\Desktop\IRsimul.xlsx 2021-01-27 19:12 - 2021-01-27 19:12 - 000145575 _____ C:\Users\Nicole\Downloads\RE avis d'imposition Jean-Claude Boisseranc.zip 2021-01-24 08:50 - 2021-03-04 12:50 - 000000000 ____D C:\Users\Nicole\Desktop\Tel24012021 2021-01-21 16:41 - 2021-01-21 16:41 - 000068829 _____ C:\Users\Nicole\Downloads\Commande300-0-21-01-2021-15-41-15-843.pdf 2021-01-21 15:13 - 2021-04-06 17:26 - 000000640 _____ C:\Windows\Tasks\G2MUploadTask-S-1-5-21-4246615447-4135047367-3922691901-1000.job 2021-01-21 15:13 - 2021-04-06 17:21 - 000000544 _____ C:\Windows\Tasks\G2MUpdateTask-S-1-5-21-4246615447-4135047367-3922691901-1000.job 2021-01-21 15:13 - 2021-04-05 21:39 - 000003670 _____ C:\Windows\system32\Tasks\G2MUploadTask-S-1-5-21-4246615447-4135047367-3922691901-1000 2021-01-21 15:13 - 2021-04-05 21:39 - 000003574 _____ C:\Windows\system32\Tasks\G2MUpdateTask-S-1-5-21-4246615447-4135047367-3922691901-1000 2021-01-21 15:13 - 2021-04-05 21:39 - 000000000 ____D C:\Users\Nicole\AppData\Local\GoToMeeting 2021-01-21 15:12 - 2021-01-21 15:12 - 000000000 ____D C:\Users\Nicole\AppData\Local\GoTo Opener 2021-01-20 16:55 - 2021-01-20 16:55 - 002659927 _____ C:\Users\Nicole\Documents\08012021Organigramme CMAR PACA.pdf 2021-01-20 12:26 - 2021-01-20 12:26 - 000013351 _____ C:\Users\Nicole\Downloads\document.pdf 2021-01-20 12:06 - 2021-01-20 12:06 - 000093451 _____ C:\Users\Nicole\Downloads\Facture 14023(1).pdf 2021-01-20 12:05 - 2021-01-20 12:05 - 000093451 _____ C:\Users\Nicole\Downloads\Facture 14023.pdf 2021-01-20 12:04 - 2021-01-20 12:04 - 000458379 _____ C:\Users\Nicole\Downloads\RE Devis menuiserie rénovation.zip ==================== Trois mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-04-06 17:01 - 2009-07-14 06:45 - 000026432 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2021-04-06 17:01 - 2009-07-14 06:45 - 000026432 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2021-04-06 16:49 - 2009-07-14 17:24 - 000750364 _____ C:\Windows\system32\perfh00C.dat 2021-04-06 16:49 - 2009-07-14 17:24 - 000150978 _____ C:\Windows\system32\perfc00C.dat 2021-04-06 16:49 - 2009-07-14 07:13 - 001676194 _____ C:\Windows\system32\PerfStringBackup.INI 2021-04-06 16:49 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf 2021-04-06 16:46 - 2019-02-05 09:10 - 000000000 ____D C:\ProgramData\Mozilla 2021-04-06 16:45 - 2016-12-07 20:45 - 000000000 ____D C:\Users\Nicole\AppData\LocalLow\Mozilla 2021-04-06 16:44 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2021-03-30 07:43 - 2016-10-03 14:22 - 000000000 ____D C:\Users\Nicole\AppData\Roaming\XnView 2021-03-29 13:23 - 2016-10-02 15:11 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2021-03-29 10:29 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\NDF 2021-03-20 11:51 - 2020-04-18 11:51 - 000000000 ____D C:\Users\Nicole\Desktop\PhotoTEL-18042020 2021-03-16 08:45 - 2020-07-01 16:44 - 000365568 _____ C:\Users\Nicole\Desktop\treso-mensuel.xlsx 2021-03-10 19:28 - 2018-11-24 10:35 - 000002072 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk ==================== SigCheckExt ========================= 2016-06-15 04:36 - 2016-06-15 04:36 - 000052224 _____ (HP Inc.) C:\Windows\system32\hpbmiapi.dll 2016-06-15 04:36 - 2016-06-15 04:36 - 000052736 _____ (HP Inc.) C:\Windows\system32\hpboid.dll 2016-06-15 04:36 - 2016-06-15 04:36 - 000012800 _____ (HP Inc.) C:\Windows\system32\hpboidps.dll 2016-06-15 04:36 - 2016-06-15 04:36 - 000078848 _____ (HP Inc.) C:\Windows\system32\hpbpro.dll 2016-06-15 04:36 - 2016-06-15 04:36 - 000013312 _____ (HP Inc.) C:\Windows\system32\hpbprops.dll 2016-06-15 04:35 - 2016-06-15 04:35 - 000065024 _____ (HP Inc.) C:\Windows\system32\HPBWSDR.DLL 2016-06-14 04:17 - 2016-06-14 04:17 - 000180736 _____ (HP Inc.) C:\Windows\system32\hplbddrv.dll 2016-06-15 04:36 - 2016-06-15 04:36 - 000067072 _____ (HP Inc.) C:\Windows\system32\HPZidr12.dll 2016-06-15 04:36 - 2016-06-15 04:36 - 000050688 _____ (HP Inc.) C:\Windows\system32\HPZinw12.dll 2016-06-15 04:36 - 2016-06-15 04:36 - 000066048 _____ (HP Inc.) C:\Windows\system32\HPZipm12.dll 2016-06-15 04:36 - 2016-06-15 04:36 - 000047104 _____ (HP Inc.) C:\Windows\system32\HPZipr12.dll 2016-06-15 04:36 - 2016-06-15 04:36 - 000038400 _____ (HP Inc.) C:\Windows\system32\hpzipt12.dll 2016-06-15 04:36 - 2016-06-15 04:36 - 000024064 _____ (HP Inc.) C:\Windows\system32\hpzisn12.dll 2018-02-28 13:00 - 2018-02-28 13:00 - 000117248 _____ (pdfforge GmbH) C:\Windows\system32\pdfcmon.dll 2016-10-04 21:55 - 2001-01-12 18:04 - 000046352 _____ (Microsoft Corporation) C:\Windows\setdebug.exe 2016-10-04 21:55 - 2001-01-12 18:04 - 000049424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clspack.exe 2016-10-04 21:55 - 2001-01-12 16:09 - 000313856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dx3j.dll 2016-06-15 04:35 - 2016-06-15 04:35 - 000055296 _____ (HP Inc.) C:\Windows\SysWOW64\HPZidr12.dll 2016-06-15 04:35 - 2016-06-15 04:35 - 000039424 _____ (HP Inc.) C:\Windows\SysWOW64\HPZipr12.dll 2016-10-04 21:55 - 2001-01-12 18:04 - 000187152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\javacypt.dll 2016-10-04 21:55 - 2001-01-12 18:04 - 000139536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\javaee.dll 2016-10-04 21:55 - 2001-01-12 18:04 - 000063248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\javaprxy.dll 2016-10-04 21:55 - 2001-01-12 18:04 - 000404752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\javart.dll 2016-10-04 21:55 - 2001-01-12 18:04 - 000015120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jdbgmgr.exe 2016-10-04 21:55 - 2001-01-12 18:04 - 000171280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jit.dll 2016-10-04 21:55 - 2001-01-12 18:04 - 000172304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jview.exe 2016-10-04 21:55 - 2008-11-03 12:22 - 000262144 _____ (Sage) C:\Windows\SysWOW64\mlcorert.dll 2016-10-04 21:55 - 2001-01-12 18:04 - 000154896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msawt.dll 2016-10-04 21:55 - 2001-01-12 18:04 - 000945424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjava.dll 2016-10-04 21:55 - 2001-01-12 18:04 - 000021264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjdbc10.dll 2016-10-04 21:55 - 2007-02-13 09:12 - 000503808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll 2016-10-04 21:55 - 2007-02-13 09:12 - 000348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll 2003-04-18 16:29 - 2003-04-18 16:29 - 000082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml4r.dll 2016-10-04 21:55 - 2001-01-12 18:04 - 000286992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vmhelper.dll 2006-10-26 13:45 - 2006-10-26 13:45 - 000293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WISPTIS.EXE 2016-10-04 21:55 - 2001-01-12 18:04 - 000171792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wjview.exe 2021-04-06 17:32 - 2021-04-06 17:32 - 002298368 _____ (Farbar) C:\Users\Nicole\Desktop\FRST64.exe 2021-04-06 16:54 - 2021-04-06 16:52 - 003467416 _____ (Nicolas Coolman) C:\Users\Nicole\Desktop\ZHPSuite.exe 2021-04-06 17:32 - 2021-04-06 17:32 - 002298368 _____ (Farbar) C:\Users\Nicole\Downloads\FRST64.exe 2021-04-06 16:51 - 2021-04-06 16:52 - 003467416 _____ (Nicolas Coolman) C:\Users\Nicole\Downloads\ZHPSuite.exe ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== BCD ================================ Gestionnaire de d‚marrage Windows --------------------------------- identificateur {bootmgr} device partition=\Device\HarddiskVolume1 description Windows Boot Manager locale fr-FR inherit {globalsettings} default {current} resumeobject {2499d057-87fe-11e6-a9ef-b5575f199365} displayorder {current} toolsdisplayorder {memdiag} timeout 30 Chargeur de d‚marrage Windows ----------------------------- identificateur {current} device partition=C: path \Windows\system32\winload.exe description Windows 7 locale fr-FR inherit {bootloadersettings} recoverysequence {2499d059-87fe-11e6-a9ef-b5575f199365} recoveryenabled Yes osdevice partition=C: systemroot \Windows resumeobject {2499d057-87fe-11e6-a9ef-b5575f199365} nx OptIn Chargeur de d‚marrage Windows ----------------------------- identificateur {2499d059-87fe-11e6-a9ef-b5575f199365} device ramdisk=[C:]\Recovery\2499d059-87fe-11e6-a9ef-b5575f199365\Winre.wim,{2499d05a-87fe-11e6-a9ef-b5575f199365} path \windows\system32\winload.exe description Windows Recovery Environment inherit {bootloadersettings} osdevice ramdisk=[C:]\Recovery\2499d059-87fe-11e6-a9ef-b5575f199365\Winre.wim,{2499d05a-87fe-11e6-a9ef-b5575f199365} systemroot \windows nx OptIn winpe Yes Reprendre … partir de la mise en veille prolong‚e ------------------------------------------------- identificateur {2499d057-87fe-11e6-a9ef-b5575f199365} device partition=C: path \Windows\system32\winresume.exe description Windows Resume Application locale fr-FR inherit {resumeloadersettings} filedevice partition=C: filepath \hiberfil.sys debugoptionenabled No Testeur de m‚moire Windows -------------------------- identificateur {memdiag} device partition=\Device\HarddiskVolume1 path \boot\memtest.exe description Diagnostics m‚moire Windows locale fr-FR inherit {globalsettings} badmemoryaccess Yes ParamŠtres EMS -------------- identificateur {emssettings} bootems Yes ParamŠtres du d‚bogueur ----------------------- identificateur {dbgsettings} debugtype Serial debugport 1 baudrate 115200 Erreurs de m‚moire RAM ---------------------- identificateur {badmemory} ParamŠtres globaux ------------------ identificateur {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} ParamŠtres du chargeur de d‚marrage ----------------------------------- identificateur {bootloadersettings} inherit {globalsettings} {hypervisorsettings} ParamŠtres de l'hyperviseur ------------------- identificateur {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 ParamŠtres du chargeur de reprise --------------------------------- identificateur {resumeloadersettings} inherit {globalsettings} Options de p‚riph‚rique ----------------------- identificateur {2499d05a-87fe-11e6-a9ef-b5575f199365} description Ramdisk Options ramdisksdidevice partition=C: ramdisksdipath \Recovery\2499d059-87fe-11e6-a9ef-b5575f199365\boot.sdi LastRegBack: 2021-04-03 08:16 ==================== Fin de FRST.txt ========================