Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 19-05-2021 Exécuté par Admin (administrateur) sur JEAN-PIERRE (20-05-2021 17:57:50) Exécuté depuis C:\Users\Admin\Desktop Profils chargés: Admin & Jean-Pierre Platform: Windows 10 Pro Version 20H2 19042.985 (X64) Langue: Français (France) Navigateur par défaut: FF Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) () [Fichier non signé] C:\Program Files (x86)\Multimedia Mouse Driver\MouseDrv.exe <2> (Adobe Inc. -> Adobe Inc) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Photoshop 2020\Elements 2020 Organizer\Elements Auto Creations 2020.exe (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (Adobe Inc. -> Adobe) C:\Program Files\Photoshop 2020\Elements 2020 Organizer\dynamiclinkmanager.exe (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Broadcom Corporation -> Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe (CyberGhost S.R.L. -> CyberGhost S.R.L.) C:\Program Files\CyberGhost 8\Dashboard.exe <2> (CyberGhost S.R.L. -> CyberGhost S.R.L.) C:\Program Files\CyberGhost 8\Dashboard.Service.exe (ICEpower a/s -> ICEpower) C:\Windows\System32\ICEsoundService64.exe (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_ffc75848a6342fdf\jhi_service.exe (Intel(R) Network Platform Group -> Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_0f2250737b8ab5a6\IntelCpHDCPSvc.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_0f2250737b8ab5a6\IntelCpHeciSvc.exe (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe <2> (IObit CO., LTD -> IObit) C:\Program Files (x86)\iFun\iFun Screenshot\iScrShot.exe (IObit CO., LTD -> IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe (IObit CO., LTD -> IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe (IObit CO., LTD -> IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe (IObit CO., LTD -> IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\RealTimeProtector.exe (IObit Information Technology -> IObit) C:\Program Files (x86)\IObit\Driver Booster\8.3.0\Scheduler.exe (Logitech Inc -> Logitech, Inc.) C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.exe <2> (Logitech Inc -> Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe <2> (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe <2> (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_2.2103.17603.0_x64__8wekyb3d8bbwe\Cortana.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20920.0_x64__8wekyb3d8bbwe\HxOutlook.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20920.0_x64__8wekyb3d8bbwe\HxTsr.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\LogonUI.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Speech_OneCore\common\SpeechRuntime.exe <2> (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.14-0\MsMpEng.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <8> (Node.js Foundation -> Node.js) C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\libs\node.exe (ORANGE VIEW LIMITED -> iTop Inc.) C:\Program Files (x86)\iTop VPN\iTopVPN.exe (Paramount Software UK Ltd -> Paramount Software UK Ltd) C:\Program Files\Macrium\Common\MacriumService.exe (Paramount Software UK Ltd -> Paramount Software UK Ltd) C:\Program Files\Macrium\Common\ReflectMonitor.exe <2> (Paramount Software UK Ltd -> Paramount Software UK Ltd) C:\Program Files\Macrium\Common\ReflectUI.exe <2> (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe <2> (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Program Files (x86)\EPSON Software\Download Navigator\EPSDNMON.EXE (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Program Files (x86)\EPSON Software\Epson Printer Connection Checker\EPPCCMON.EXE <2> (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S60RPB.EXE (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Program Files\EPSON\Epson Data Collection Agent\DataCollectionAgentController.exe (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Program Files\EPSON\Epson Data Collection Agent\DCAgent.exe (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) C:\ProgramData\EPSON\EPW!3 SSRP\E_S40STB.EXE (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Windows\System32\spool\drivers\x64\3\E_YATIWEE.EXE <4> (Wondershare Technology Co.,Ltd -> Wondershare) C:\ProgramData\Wondershare\Service\InstallAssistService.exe 0 C:\Program Files\WindowsApps\SinewSoftwareSystems.EnpassPasswordManager_6.61.804.0_x86__fwdy0m65qb6h2\EnpassBridge\Enpass.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [320568 2016-09-20] (Intel(R) Rapid Storage Technology -> Intel Corporation) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9269352 2019-08-08] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3412680 2021-02-17] (Adobe Inc. -> Adobe Systems, Incorporated) HKLM\...\Run: [Reflect UI] => C:\Program Files\Macrium\Common\ReflectUI.exe [7580488 2021-04-30] (Paramount Software UK Ltd -> Paramount Software UK Ltd) HKLM\...\Run: [EPPCCMON] => C:\Program Files (x86)\EPSON Software\Epson Printer Connection Checker\EPPCCMON.EXE [442936 2020-10-22] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) HKLM\...\Run: [DataCollectionAgentController] => C:\Program Files\EPSON\Epson Data Collection Agent\DataCollectionAgentController.exe [394864 2020-09-18] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) HKLM\...\Run: [AdobePSE18AutoAnalyzer] => C:\Program Files\Photoshop 2020\Elements 2020 Organizer\Elements Auto Creations 2020.exe [3560048 2020-12-07] (Adobe Inc. -> Adobe Systems Incorporated) HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [3136136 2019-01-31] (Logitech Inc -> Logitech, Inc.) HKLM-x32\...\Run: [WireLessMouse] => C:\Program Files (x86)\Multimedia Mouse Driver\StartAutorun.exe MouseDrv.exe HKU\S-1-5-21-1440033328-4102027548-317780136-1002\...\Run: [CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [144008 2019-10-22] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-21-1440033328-4102027548-317780136-1002\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [32281272 2020-11-10] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-1440033328-4102027548-317780136-1002\...\Run: [EPSON Stylus SX400 Series] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIEGE.EXE [221696 2007-12-17] (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) HKU\S-1-5-21-1440033328-4102027548-317780136-1002\...\Run: [7A8A0BF1C97243271ECFE5D422E97B6912735D56._service_run] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=service /prefetch:8 HKU\S-1-5-21-1440033328-4102027548-317780136-1002\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATIWEE.EXE [418736 2019-08-22] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) HKU\S-1-5-21-1440033328-4102027548-317780136-1002\...\Run: [CyberGhost] => C:\Program Files\CyberGhost 8\Dashboard.exe [1155312 2021-05-17] (CyberGhost S.R.L. -> CyberGhost S.R.L.) HKU\S-1-5-21-1440033328-4102027548-317780136-1002\...\Run: [Norton Download Manager{DSP-N360-22200539-SHPD-FSD5240005}] => C:\Users\Public\Downloads\Norton\{DSP-N360-22200539-SHPD-FSD5240005}\FSDUI_Custom.exe [3750208 2021-05-20] (NortonLifeLock Inc. -> NortonLifeLock Inc.) <==== ATTENTION HKU\S-1-5-21-1440033328-4102027548-317780136-1002\...\Run: [Advanced SystemCare] => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe [3724824 2021-05-10] (IObit CO., LTD -> IObit) HKU\S-1-5-21-1440033328-4102027548-317780136-1002\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 HKU\S-1-5-21-1440033328-4102027548-317780136-1003\...\Run: [EPSON Stylus SX400] => C:\Windows\System32\spool\drivers\x64\3\E_IATIEGE.EXE [221696 2007-12-17] (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) HKU\S-1-5-21-1440033328-4102027548-317780136-1003\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [32281272 2020-11-10] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-1440033328-4102027548-317780136-1003\...\Run: [CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [144008 2019-10-22] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-21-1440033328-4102027548-317780136-1003\...\Run: [GoogleDriveSync] => "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart HKU\S-1-5-21-1440033328-4102027548-317780136-1003\...\Run: [EPLTarget\P0000000000000003] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATIWEE.EXE [418736 2019-08-22] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) HKU\S-1-5-21-1440033328-4102027548-317780136-1003\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATIWEE.EXE [418736 2019-08-22] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) HKU\S-1-5-21-1440033328-4102027548-317780136-1003\...\Run: [QMxNetworkSync] => [X] HKU\S-1-5-21-1440033328-4102027548-317780136-1003\...\Run: [EPLTarget\P0000000000000002] => C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIWEE.EXE [418736 2019-08-22] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) HKU\S-1-5-21-1440033328-4102027548-317780136-1003\...\Run: [EPSDNMON] => C:\Program Files (x86)\Epson Software\Download Navigator\EPSDNMON.EXE [346712 2020-07-27] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) HKU\S-1-5-21-1440033328-4102027548-317780136-1003\...\Run: [CyberGhost] => C:\Program Files\CyberGhost 8\Dashboard.exe [1155312 2021-05-17] (CyberGhost S.R.L. -> CyberGhost S.R.L.) HKU\S-1-5-21-1440033328-4102027548-317780136-1003\...\Run: [Norton Download Manager{DSP-N360-22200539-SHPD-FSD5240005}] => C:\Users\Public\Downloads\Norton\{DSP-N360-22200539-SHPD-FSD5240005}\FSDUI_Custom.exe [3750208 2021-05-20] (NortonLifeLock Inc. -> NortonLifeLock Inc.) <==== ATTENTION HKU\S-1-5-21-1440033328-4102027548-317780136-1008\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [32281272 2020-11-10] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-1440033328-4102027548-317780136-1008\...\RunOnce: [Delete Cached Update Binary] => C:\Windows\system32\cmd.exe /q /c del /q "C:\Users\Michaël\AppData\Local\Microsoft\OneDrive\Update\OneDriveSetup.exe" HKU\S-1-5-21-1440033328-4102027548-317780136-1008\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\Windows\system32\cmd.exe /q /c del /q "C:\Users\Michaël\AppData\Local\Microsoft\OneDrive\StandaloneUpdater\OneDriveSetup.exe" HKU\S-1-5-21-1440033328-4102027548-317780136-1008\...\RunOnce: [Uninstall 21.016.0124.0003\amd64] => C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Michaël\AppData\Local\Microsoft\OneDrive\21.016.0124.0003\amd64" HKU\S-1-5-21-1440033328-4102027548-317780136-1008\...\RunOnce: [Uninstall 21.016.0124.0003] => C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Michaël\AppData\Local\Microsoft\OneDrive\21.016.0124.0003" HKU\S-1-5-18\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATIWEE.EXE [418736 2019-08-22] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) HKLM\...\Print\Monitors\EPSON Stylus SX400 Series 64MonitorBE: C:\Windows\SYSTEM32\E_ILMEGE.DLL [108032 2007-12-07] (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) HKLM\...\Print\Monitors\EPSON XP-3100 Series 64MonitorBE: C:\Windows\SYSTEM32\E_YLMBWEE.DLL [187392 2018-06-15] (Microsoft Windows Hardware Compatibility Publisher -> Seiko Epson Corporation) HKLM\...\Print\Monitors\EpsonNet Print Port: C:\Windows\SYSTEM32\enppmon.dll [500736 2016-09-14] (SEIKO EPSON CORPORATION) [Fichier non signé] HKLM\Software\...\AppCompatFlags\Custom\wmplayer.exe: [{00a8ce68-cb2e-4652-aecd-c05c0d9d53a7}.sdb] -> Windows Media Player 64-bit Plug-in Fix HKLM\Software\...\AppCompatFlags\InstalledSDB\{00a8ce68-cb2e-4652-aecd-c05c0d9d53a7}: [DatabasePath] -> C:\WINDOWS\AppPatch\CustomSDB\{00a8ce68-cb2e-4652-aecd-c05c0d9d53a7}.sdb [2011-12-11] Startup: C:\Users\Jean-Pierre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Envoyer à OneNote.lnk [2020-08-27] ShortcutTarget: Envoyer à OneNote.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) Startup: C:\Users\Jean-Pierre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sidebar427.lnk [2021-05-20] ShortcutTarget: Sidebar427.lnk -> C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation) [Fichier non signé] [Fichier en cours d'utilisation] Startup: C:\Users\Jean-Pierre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ZenMate.bat [2018-09-19] () [Fichier non signé] BootExecute: GroupPolicy: Restriction ? <==== ATTENTION Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {028C0BB7-8921-4D4A-9C95-148D6A1419DD} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [566592 2008-07-30] (Apple Inc. -> Apple Inc.) Task: {042C1A9C-DD4E-452A-8DBF-400A0A559DDF} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [696304 2021-05-07] (Mozilla Corporation -> Mozilla Foundation) Task: {0915EBFC-A35D-4111-B8E6-E04943268E80} - System32\Tasks\SU_AutoUpdate => C:\Program Files (x86)\IObit\Software Updater\SoftwareUpdater.exe [4518936 2021-04-25] (IObit CO., LTD -> IObit) Task: {0B2F87F6-2735-4FB0-AAA8-DAF327A5D26C} - System32\Tasks\iFun Screenshot SkipUAC (Admin) => C:\Program Files (x86)\iFun\iFun Screenshot\iScrShot.exe [3711512 2021-04-27] (IObit CO., LTD -> IObit) Task: {17244D01-2DFF-4D29-8EA1-E2566A53A19D} - System32\Tasks\Norton Security\Norton Security Error Processor => C:\Program Files\Norton Security\Engine\22.20.4.57\SymErr.exe Task: {1E6B3AD5-0839-4C03-B8E3-CE4C7DF928E5} - System32\Tasks\iFun Screen Recorder SkipUAC (Admin) => C:\Program Files (x86)\iFun\iFun Screen Recorder\IScrRec.exe [4053528 2021-04-25] (IObit CO., LTD -> IObit) Task: {202C52BF-1525-41A6-9B37-EA17A4AC5215} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2495728 2017-09-15] (Microsoft Corporation -> Microsoft Corporation) Task: {2926105B-8423-469F-B1A4-D373073D1DED} - \Microsoft\Windows\UNP\RunCampaignManager -> Pas de fichier <==== ATTENTION Task: {2E7A7C9F-F412-4520-896C-019402C5EB95} - System32\Tasks\Microsoft_MKC_Logon_Task_ceip.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ceip.exe [39152 2017-09-15] (Microsoft Corporation -> Microsoft) Task: {2F5B77C5-DC4D-49A5-9656-018B99E96641} - System32\Tasks\AdobeAAMUpdater-1.0-JEAN-PIERRE-Michaël => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated) Task: {360ED14D-F69E-4565-B408-9CE4DC5F6EB1} - System32\Tasks\ASC_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe [4530184 2021-05-10] (IObit CO., LTD -> IObit) Task: {3ABEF5C0-E156-4952-8BB4-5AA02EA62C42} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-05-01] (Google Inc -> Google Inc.) Task: {3EC05F2E-16C3-40A2-BD39-7D0157D39BC1} - System32\Tasks\Driver Booster Scheduler => C:\Program Files (x86)\IObit\Driver Booster\8.3.0\Scheduler.exe [152848 2020-12-23] (IObit Information Technology -> IObit) Task: {42EE890E-5CBB-47B5-806B-5912212877FC} - System32\Tasks\Software Updater Scheduler => C:\Program Files (x86)\IObit\Software Updater\SUInit.exe [1794584 2021-04-14] (IObit CO., LTD -> IObit) <==== ATTENTION Task: {442C77CF-5208-4D73-8E37-431E02B20193} - System32\Tasks\EPSON XP-3100 Series Update {5D778D0D-CF23-455E-A3F4-4F0FF8A93BA0} => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSWEE.EXE [680440 2017-06-07] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) Task: {47A89F85-F506-4EFB-932C-A2316C1F01D2} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2104.14-0\MpCmdRun.exe [595288 2021-05-18] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {4B686759-35C9-4F3A-9B45-7526F047FA4D} - System32\Tasks\Uninstaller_SkipUac_Admin => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [6565136 2020-10-19] (IObit Information Technology -> IObit) Task: {4F303114-977F-421F-AB5F-6D20A4046AE4} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2495728 2017-09-15] (Microsoft Corporation -> Microsoft Corporation) Task: {58D542CE-128D-48AE-A9A8-90CAB954CDB5} - System32\Tasks\iFun Screen Recorder UAC => C:\Program Files (x86)\iFun\iFun Screen Recorder\iScrInit.exe [934936 2021-04-25] (IObit CO., LTD -> IObit) Task: {5B4FB537-6319-4744-949A-650DC1FBD69E} - System32\Tasks\EPSON XP-3100 Series Update {09202CC1-D1AB-4630-846B-8083D0556D1F} => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSWEE.EXE [680440 2017-06-07] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) Task: {5D86A905-BC90-41D2-8CAF-029421F1B20D} - System32\Tasks\Intel PTT EK Recertification => C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_75ffca5eec865b4b\lib\IntelPTTEKRecertification.exe [918288 2020-04-22] (Intel(R) Trust Services -> Intel(R) Corporation) Task: {5FC0BEB7-4523-4718-B63B-8E32B75FB65C} - System32\Tasks\PostponeDeviceSetupToast_S-1-5-21-1440033328-4102027548-317780136-1002_2 => {5ded83ef-1e99-48cf-bf83-676d2a6db408} C:\Windows\System32\oobe\UserOOBE.dll [412160 2021-03-11] (Microsoft Windows -> Microsoft Corporation) Task: {60E21A07-6AEB-40C1-9D34-EBD470A191E7} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2104.14-0\MpCmdRun.exe [595288 2021-05-18] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {61241AF0-EC84-49E2-972C-6BCA674D90ED} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.) Task: {64D7E717-FEB1-4D02-8A89-6ACC3D469B4F} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [114000 2021-05-16] (Microsoft Corporation -> Microsoft Corporation) Task: {6B84C087-A6FC-420B-B282-31A6BE1754CE} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [1790184 2021-04-29] (Avast Software s.r.o. -> Avast Software) Task: {6DB2B85C-5DA9-4FC2-8F0F-205219BE760C} - System32\Tasks\iFun Screenshot Update => C:\Program Files (x86)\iFun\iFun Screenshot\AutoUpdate.exe [2800152 2021-04-20] (IObit CO., LTD -> IObit) Task: {726F53E3-B058-4CFD-85F8-468C88CA7AFA} - System32\Tasks\ASC_SkipUac_Admin => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe [9571352 2021-05-10] (IObit CO., LTD -> IObit) Task: {75092FE5-7208-41A9-A6D0-01492FE2B360} - System32\Tasks\iTopVPN_SkipUAC_Admin => C:\Program Files (x86)\iTop VPN\iTopVPN.exe [5713296 2021-04-13] (ORANGE VIEW LIMITED -> iTop Inc.) Task: {797498BE-A008-4F5E-9995-282B0DC5690E} - System32\Tasks\iTopVPN_Update_Admin => C:\Program Files (x86)\iTop VPN\atud.exe [2859408 2021-03-31] (ORANGE VIEW LIMITED -> iTop Inc.) Task: {86FDB5E7-6487-4B0C-AF8A-9F74834BBC78} - System32\Tasks\EPSON XP-3100 Series Update {60E66DB2-EDA5-4EF2-BF2D-4708E492983F} => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSWEE.EXE [680440 2017-06-07] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) Task: {8FDAE3A0-2C5C-4AB6-A027-6DBB58A09B6B} - System32\Tasks\Norton Security\Norton Security Autofix => C:\Program Files\Norton Security\Engine\22.20.4.57\SymErr.exe Task: {91310135-6B97-4334-A9F5-99EE9A24FB6F} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3412680 2021-02-17] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {A15AD80E-C4D2-4408-9CE2-EF1B038E8376} - System32\Tasks\Driver Booster Update => C:\Program Files (x86)\IObit\Driver Booster\8.3.0\AutoUpdate.exe [2268432 2020-12-23] (IObit Information Technology -> IObit) Task: {A5577401-FA8E-45F7-9A27-98290E4CA19C} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [114000 2021-05-16] (Microsoft Corporation -> Microsoft Corporation) Task: {ADEC60CC-6AAA-431D-A293-6EC33BC6801F} - System32\Tasks\Norton Security\Norton Security Error Analyzer => C:\Program Files\Norton Security\Engine\22.20.4.57\SymErr.exe Task: {B1898653-3216-409C-BB38-7ED1AB9567F9} - System32\Tasks\iTopVPN_Scheduler_Admin => C:\Program Files (x86)\iTop VPN\iTopVPN.exe [5713296 2021-04-13] (ORANGE VIEW LIMITED -> iTop Inc.) Task: {B96E6062-27D0-4EC3-A03E-3B56B8C13B47} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23103392 2021-04-28] (Microsoft Corporation -> Microsoft Corporation) Task: {C1BE1E4C-01A0-4196-A4EA-2450D6B0EA59} - System32\Tasks\Software Updater SkipUAC(Admin) => C:\Program Files (x86)\IObit\Software Updater\SoftwareUpdater.exe [4518936 2021-04-25] (IObit CO., LTD -> IObit) <==== ATTENTION Task: {C5B78F67-2CA1-4EF3-88DB-78F3CF226C65} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-11-10] (Piriform Software Ltd -> Piriform Software Ltd) Task: {C7E2F740-C50E-49C5-ADF2-FA54F6F4FBD1} - System32\Tasks\iFun Screenshot Startup => C:\Program Files (x86)\iFun\iFun Screenshot\iScrShot.exe [3711512 2021-04-27] (IObit CO., LTD -> IObit) Task: {CF6F91A0-01D4-4E3B-B7ED-593AC1573532} - System32\Tasks\Driver Booster SkipUAC (Admin) => C:\Program Files (x86)\IObit\Driver Booster\8.3.0\DriverBooster.exe [8152016 2021-02-03] (IObit Information Technology -> IObit) Task: {D17D2515-404E-4E40-B7D6-4DCB1BA529E6} - System32\Tasks\Uninstaller_SkipUac_Jean-Pierre => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [6565136 2020-10-19] (IObit Information Technology -> IObit) Task: {D32B3451-B786-46E9-BA2F-6AD1702F3057} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [1841904 2017-09-15] (Microsoft Corporation -> Microsoft Corporation) Task: {DBB923B8-D908-4E22-8D5E-B66F7446E9A9} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23103392 2021-04-28] (Microsoft Corporation -> Microsoft Corporation) Task: {DED8507F-AEB7-4AC8-B891-6823C2DD7C91} - System32\Tasks\MAGIX PC Check & Tuning 2019 => C:\Program Files (x86)\MAGIX\MAGIX PC Check & Tuning 2019\PCCT.exe [2467912 2018-06-01] (MAGIX Software GmbH -> MAGIX Software GmbH) Task: {E054F086-74D2-4DAC-92B7-D2994AD67477} - System32\Tasks\Software Updater SkipUAC(Jean-Pierre) => C:\Program Files (x86)\IObit\Software Updater\SoftwareUpdater.exe [4518936 2021-04-25] (IObit CO., LTD -> IObit) <==== ATTENTION Task: {E4E14302-9F82-4733-8AB8-2658A1631A98} - System32\Tasks\iFun Screen Recorder Update => C:\Program Files (x86)\iFun\iFun Screen Recorder\AutoUpdate.exe [2804440 2021-03-25] (IObit Information Technology -> IObit) Task: {EA4292B7-6191-427B-AEA6-E90ECA347FDC} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [1841904 2017-09-15] (Microsoft Corporation -> Microsoft Corporation) Task: {EACF9FA0-B60C-4A1E-A054-F9123AEB04D3} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2104.14-0\MpCmdRun.exe [595288 2021-05-18] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {EFD57735-4AFD-470E-BE64-ECEC9A06D5AA} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-05-01] (Google Inc -> Google Inc.) Task: {F108DEB4-555A-4C8C-A762-5CB41C4010BB} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [26781880 2020-11-10] (Piriform Software Ltd -> Piriform Software Ltd) Task: {F1BDD0AC-9E8E-47AA-96A5-803BF3DFD384} - System32\Tasks\Connect => C:\Program Files (x86)\MAGIX\Connect\connect.exe [324680 2017-05-10] (MAGIX Software GmbH -> MAGIX Software GmbH) Task: {F2F8E7EA-3527-48FB-91FC-CAE52D62B401} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2104.14-0\MpCmdRun.exe [595288 2021-05-18] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {FF0A739D-DD1C-466A-AEFD-1214ED39FC2E} - System32\Tasks\MAGIX PC Check & Tuning 2019 (Autopilot.exe) => C:\Program Files (x86)\MAGIX\MAGIX PC Check & Tuning 2019\Autopilot.exe [1743944 2018-06-01] (MAGIX Software GmbH -> MAGIX Software GmbH) Task: {FF6308F1-3AD4-49AF-9BA6-385CD0B107ED} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [1966320 2017-09-15] (Microsoft Corporation -> Microsoft) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\Windows\Tasks\Connect.job => C:\Program Files (x86)\MAGIX\Connect\connect.exe Task: C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Task: C:\Windows\Tasks\EPSON XP-3100 Series Update {09202CC1-D1AB-4630-846B-8083D0556D1F}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSWEE.EXE:/EXE:{09202CC1-D1AB-4630-846B-8083D0556D1F} /F:UpdateMAISON\JEAN-PIERRE$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi Task: C:\Windows\Tasks\EPSON XP-3100 Series Update {5D778D0D-CF23-455E-A3F4-4F0FF8A93BA0}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSWEE.EXE:/EXE:{5D778D0D-CF23-455E-A3F4-4F0FF8A93BA0} /F:UpdateMAISON\JEAN-PIERRE$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi Task: C:\Windows\Tasks\EPSON XP-3100 Series Update {60E66DB2-EDA5-4EF2-BF2D-4708E492983F}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSWEE.EXE:/EXE:{60E66DB2-EDA5-4EF2-BF2D-4708E492983F} /F:UpdateMAISON\JEAN-PIERRE$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi Task: C:\Windows\Tasks\MAGIX PC Check & Tuning 2019 (Autopilot.exe).job => C:\Program Files (x86)\MAGIX\MAGIX PC Check & Tuning 2019\Autopilot.exe C:\Program Files (x86)\MAGIX\MAGIX PC Check & Tuning 2019\JEAN-PIERRE\Admin-MAGIX PC Check & Tuning 2019 (Autopilot.exe Task: C:\Windows\Tasks\MAGIX PC Check & Tuning 2019.job => C:\Program Files (x86)\MAGIX\MAGIX PC Check & Tuning 2019\PCCT.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) ProxyServer: [S-1-5-21-1440033328-4102027548-317780136-1003] => 178.32.131.178.:1080 Tcpip\..\Interfaces\{a84e95c3-ad1e-4fac-b9e6-021c3ec49e3c}: [NameServer] 199.85.126.20,199.85.127.20,192.168.0.1 Tcpip\..\Interfaces\{a84e95c3-ad1e-4fac-b9e6-021c3ec49e3c}: [DhcpNameServer] 89.2.0.1 89.2.0.2 Edge: ======= DownloadDir: D:\Téléchargements Edge HomeButtonPage: HKU\S-1-5-21-1440033328-4102027548-317780136-1002 -> about:start Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)] Edge Extension: (Pas de nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [non trouvé(e)] Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)] Edge Extension: (Pas de nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [non trouvé(e)] Edge Profile: C:\Users\Admin\AppData\Local\Microsoft\Edge\User Data\Default [2021-05-20] Edge StartupUrls: Default -> "about:blank" Edge HKLM-x32\...\Edge\Extension: [ihcjicgdanjaechkgeegckofjjedodee] FireFox: ======== FF DefaultProfile: l26c1gz4.default FF ProfilePath: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\l26c1gz4.default [2020-05-13] FF user.js: detected! => C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\l26c1gz4.default\user.js [2021-05-18] FF Extension: (IObit Surfing Protection & Ads Removal) - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\l26c1gz4.default\Extensions\ascsurfingprotectionnew@iobit.com.xpi [2020-07-28] FF ProfilePath: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\ywl7ot4z.default-release-1621521242871 [2021-05-20] FF Extension: (IObit Surfing Protection & Ads Removal) - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\ywl7ot4z.default-release-1621521242871\Extensions\ascsurfingprotectionnew@iobit.com.xpi [2020-07-28] FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt FF Extension: (Logitech SetPoint) - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2021-05-20] [non signé] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2019-09-27] (Adobe Inc. -> Adobe Systems) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-03-10] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-04-27] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2019-09-27] (Adobe Inc. -> Adobe Systems) Chrome: ======= CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] CHR HKU\S-1-5-21-1440033328-4102027548-317780136-1003\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee] CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] Brave: ======= BRA Profile: C:\Users\Admin\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2020-10-11] BRA DefaultSearchKeyword: Default -> :g BRA Extension: (Avast Online Security) - C:\Users\Admin\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2020-03-28] BRA Extension: (Brave Local Data Files Updater) - C:\Users\Admin\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2020-03-28] BRA Extension: (Brave Ad Block Updater (Default)) - C:\Users\Admin\AppData\Local\BraveSoftware\Brave-Browser\User Data\cffkpbalmllkdoenhmdmpbkajipdjfam [2020-04-29] BRA Extension: (Brave Tor Client Updater (Windows)) - C:\Users\Admin\AppData\Local\BraveSoftware\Brave-Browser\User Data\cpoalefficncklhjfpglfiplenlpccdb [2020-03-28] BRA Extension: (Brave NTP sponsored images) - C:\Users\Admin\AppData\Local\BraveSoftware\Brave-Browser\User Data\lcenblphbmngnohghkhpojmpflebkcpd [2020-04-28] BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\Admin\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2020-04-26] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.) R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [823352 2019-09-27] (Adobe Inc. -> Adobe Inc.) R2 AdvancedSystemCareService14; C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe [1295384 2021-04-28] (IObit CO., LTD -> IObit) R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3780296 2021-02-17] (Adobe Inc. -> Adobe Systems, Incorporated) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3548360 2021-02-17] (Adobe Inc. -> Adobe Systems, Incorporated) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8798600 2021-04-28] (Microsoft Corporation -> Microsoft Corporation) R2 CyberGhost8Service; C:\Program Files\CyberGhost 8\Dashboard.Service.exe [66800 2021-05-17] (CyberGhost S.R.L. -> CyberGhost S.R.L.) R2 DCAgent; C:\Program Files\EPSON\Epson Data Collection Agent\DCAgent.exe [16496 2020-09-18] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) R2 EpsonScanSvc; C:\WINDOWS\system32\EscSvc64.exe [145224 2019-07-04] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) R2 EPSON_PM_RPCV4_06; C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S60RPB.EXE [152152 2020-03-25] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) S2 IObitUnSvr; C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe [158992 2020-10-19] (IObit Information Technology -> IObit) R2 MacriumService; C:\Program Files\Macrium\Common\MacriumService.exe [8929608 2021-04-30] (Paramount Software UK Ltd -> Paramount Software UK Ltd) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7456464 2020-12-19] (Malwarebytes Inc -> Malwarebytes) S3 MyEpson Portal Service; C:\Program Files (x86)\EPSON\MyEpson Portal\mepService.exe [714712 2017-06-28] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) S3 PDF Architect 6 Update Service; C:\Program Files\PDF Architect 6\updater-ws.exe [1665272 2019-03-07] (pdfforge GmbH -> pdfforge GmbH) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5393288 2021-05-12] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2104.14-0\NisSrv.exe [2599328 2021-05-18] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2104.14-0\MsMpEng.exe [128376 2021-05-18] (Microsoft Windows Publisher -> Microsoft Corporation) R2 Wondershare InstallAssist; C:\ProgramData\Wondershare\Service\InstallAssistService.exe [269200 2020-09-27] (Wondershare Technology Co.,Ltd -> Wondershare) S2 RstMwService; %SystemRoot%\System32\DriverStore\FileRepository\iaahcic.inf_amd64_120314e52c04567c\RstMwService.exe [X] ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 ampa; C:\WINDOWS\system32\ampa.sys [38320 2017-02-28] (CHENGDU AOMEI Tech Co., Ltd. -> ) R3 AscFileControl; C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win10_amd64\AscFileControl.sys [40496 2020-06-03] (IObit Information Technology -> IObit) R3 AscFileFilter; C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win10_amd64\AscFileFilter.sys [46008 2020-07-21] (IObit Information Technology -> IObit) R3 AscRegistryFilter; C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win10_amd64\AscRegistryFilter.sys [46008 2020-06-03] (IObit Information Technology -> IObit) S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Fichier non signé] R1 cbfsconnect2017; C:\Windows\system32\drivers\cbfsconnect2017.sys [481296 2020-06-25] (Microsoft Windows Hardware Compatibility Publisher -> Callback Technologies, Inc.) R3 cpuz143; C:\Windows\temp\cpuz143\cpuz143_x64.sys [48960 2021-05-20] (CPUID -> CPUID) R3 cpuz145; C:\WINDOWS\temp\cpuz145\cpuz145_x64.sys [49968 2021-05-20] (CPUID -> CPUID) S3 ddmdrv; C:\WINDOWS\system32\ddmdrv.sys [35760 2016-12-27] (CHENGDU AOMEI Tech Co., Ltd. -> ) S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus2.sys [159600 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R1 ElbyCDIO; C:\Windows\System32\Drivers\ElbyCDIO.sys [42616 2017-05-14] (Microsoft Windows Hardware Compatibility Publisher -> Elaborate Bytes AG) R3 iobit_monitor_server; C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\Monitor_win10_x64.sys [32520 2020-12-02] (IObit Information Technology -> IObit) S3 IUFileFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IUFileFilter.sys [43896 2020-07-31] (IObit Information Technology -> IObit) S3 IUProcessFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IUProcessFilter.sys [37112 2020-07-31] (IObit Information Technology -> IObit) S3 IURegistryFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IURegistryFilter.sys [51128 2020-07-31] (IObit Information Technology -> IObit) R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [220752 2021-05-20] (Malwarebytes Inc -> Malwarebytes) S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [19912 2020-12-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [248992 2021-05-03] (Malwarebytes Inc -> Malwarebytes) R3 MpKsl02b69b2d; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B53534C9-E2D7-4BA4-BEAD-CB5C4D3C3A5A}\MpKslDrv.sys [107744 2021-05-20] (Microsoft Windows -> Microsoft Corporation) R0 mrcbt; C:\Windows\System32\drivers\mrcbt.sys [105248 2020-11-14] (Paramount Software UK Ltd -> Windows (R) Win 7 DDK provider) R0 mrigflt; C:\Windows\System32\drivers\mrigflt.sys [79840 2020-10-14] (Paramount Software UK Ltd -> Windows (R) Win 7 DDK provider) S3 PSMounterEx; C:\Windows\system32\drivers\psmounterex.sys [179416 2019-02-15] (Paramount Software UK Ltd -> Windows (R) Win 7 DDK provider) R1 SMR523; C:\Windows\System32\drivers\SMR523.SYS [119888 2020-11-20] (Symantec Corporation -> Symantec Corporation) S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [167280 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R3 tap0901; C:\Windows\System32\drivers\tap0901.sys [27136 2016-04-21] (OpenVPN Technologies, Inc. -> The OpenVPN Project) S3 tapexpressvpn; C:\Windows\System32\drivers\tapexpressvpn.sys [45440 2019-05-22] (ExprsVPN LLC -> The OpenVPN Project) S3 tapwindscribe0901; C:\Windows\System32\drivers\tapwindscribe0901.sys [54896 2018-07-06] (Windscribe Limited -> The OpenVPN Project) R3 vpnpbus; C:\Windows\System32\drivers\vpnpbus.sys [20496 2020-06-25] (Microsoft Windows Hardware Compatibility Publisher -> Callback Technologies, Inc.) S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [49560 2021-05-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WDC_SAM; C:\Windows\System32\drivers\wdcsam64.sys [26880 2015-11-12] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.) R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [421112 2021-05-18] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [73960 2021-05-18] (Microsoft Windows -> Microsoft Corporation) S3 SymEvnt; \??\C:\Program Files\Norton Security\NortonData\22.20.5.39\SymPlatform\SymEvnt.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-05-20 17:57 - 2021-05-20 17:58 - 000044412 _____ C:\Users\Admin\Desktop\FRST.txt 2021-05-20 17:57 - 2021-05-20 17:58 - 000000000 ____D C:\FRST 2021-05-20 17:56 - 2021-05-20 17:56 - 002299904 _____ (Farbar) C:\Users\Admin\Desktop\FRST64.exe 2021-05-20 17:10 - 2021-05-20 17:10 - 000003370 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1440033328-4102027548-317780136-1002 2021-05-20 17:10 - 2021-05-20 17:10 - 000003294 _____ C:\Windows\system32\Tasks\ASC_PerformanceMonitor 2021-05-20 17:10 - 2021-05-20 17:10 - 000003084 _____ C:\Windows\system32\Tasks\ASC_SkipUac_Admin 2021-05-20 17:10 - 2021-05-20 17:10 - 000002450 _____ C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-05-20 17:10 - 2021-05-20 17:10 - 000001315 _____ C:\Users\Public\Desktop\Advanced SystemCare.lnk 2021-05-20 17:08 - 2021-05-20 17:08 - 000003368 _____ C:\Windows\system32\Tasks\iFun Screen Recorder Update 2021-05-20 17:08 - 2021-05-20 17:08 - 000003338 _____ C:\Windows\system32\Tasks\iFun Screenshot Update 2021-05-20 17:08 - 2021-05-20 17:08 - 000003284 _____ C:\Windows\system32\Tasks\iFun Screenshot Startup 2021-05-20 17:08 - 2021-05-20 17:08 - 000003130 _____ C:\Windows\system32\Tasks\iFun Screen Recorder SkipUAC (Admin) 2021-05-20 17:08 - 2021-05-20 17:08 - 000003120 _____ C:\Windows\system32\Tasks\iTopVPN_Update_Admin 2021-05-20 17:08 - 2021-05-20 17:08 - 000003102 _____ C:\Windows\system32\Tasks\iFun Screenshot SkipUAC (Admin) 2021-05-20 17:08 - 2021-05-20 17:08 - 000003100 _____ C:\Windows\system32\Tasks\iFun Screen Recorder UAC 2021-05-20 17:08 - 2021-05-20 17:08 - 000003084 _____ C:\Windows\system32\Tasks\iTopVPN_Scheduler_Admin 2021-05-20 17:08 - 2021-05-20 17:08 - 000002878 _____ C:\Windows\system32\Tasks\iTopVPN_SkipUAC_Admin 2021-05-20 17:08 - 2021-05-20 17:08 - 000001359 _____ C:\Users\Public\Desktop\iFun Screen Recorder.lnk 2021-05-20 17:08 - 2021-05-20 17:08 - 000001333 _____ C:\Users\Public\Desktop\iFun Screenshot.lnk 2021-05-20 17:08 - 2021-05-20 17:08 - 000001094 _____ C:\Users\Public\Desktop\iTop VPN.lnk 2021-05-20 17:08 - 2021-05-20 17:08 - 000000000 ____D C:\Users\Admin\Documents\iFun Screen Recorder 2021-05-20 17:08 - 2021-05-20 17:08 - 000000000 ____D C:\Users\Admin\AppData\Roaming\iTop VPN 2021-05-20 17:08 - 2021-05-20 17:08 - 000000000 ____D C:\Users\Admin\AppData\Roaming\iFun 2021-05-20 17:08 - 2021-05-20 17:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTop VPN 2021-05-20 17:08 - 2021-05-20 17:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iFun Screenshot 2021-05-20 17:08 - 2021-05-20 17:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iFun Screen Recorder 2021-05-20 17:08 - 2021-05-20 17:08 - 000000000 ____D C:\ProgramData\iTop VPN 2021-05-20 17:08 - 2021-05-20 17:08 - 000000000 ____D C:\ProgramData\iFun 2021-05-20 17:08 - 2021-05-20 17:08 - 000000000 ____D C:\ProgramData\{150F4013-6884-4350-8DDC-6BFCB4C5DC15} 2021-05-20 17:08 - 2021-05-20 17:08 - 000000000 ____D C:\Program Files (x86)\iTop VPN 2021-05-20 17:08 - 2021-05-20 17:08 - 000000000 ____D C:\Program Files (x86)\iFun 2021-05-20 17:07 - 2021-05-20 17:26 - 000002196 _____ C:\Users\Public\Desktop\IObit Software Updater.lnk 2021-05-20 17:07 - 2021-05-20 17:07 - 000003176 _____ C:\Windows\system32\Tasks\Software Updater Scheduler 2021-05-20 16:39 - 2021-05-20 16:37 - 000000271 _____ C:\Users\Admin\Desktop\Ça m'énerve ! - Forums CNET France.URL 2021-05-20 16:37 - 2021-05-20 16:37 - 000000271 _____ C:\Users\Jean-Pierre\Desktop\Ça m'énerve ! - Forums CNET France.URL 2021-05-20 16:34 - 2021-05-20 16:34 - 000000000 ____D C:\Users\Admin\Desktop\Anciennes données de Firefox 2021-05-20 16:32 - 2021-05-20 16:32 - 000004036 _____ C:\Windows\system32\Tasks\PostponeDeviceSetupToast_S-1-5-21-1440033328-4102027548-317780136-1002_2 2021-05-20 16:29 - 2021-05-20 16:28 - 000444254 _____ C:\Users\Admin\Desktop\ZHPDiag.txt 2021-05-20 16:22 - 2021-05-20 16:28 - 000000000 ____D C:\Users\Admin\AppData\Roaming\ZHP 2021-05-20 16:22 - 2021-05-20 16:22 - 000000914 _____ C:\Users\Admin\Desktop\ZHPSuite.lnk 2021-05-20 16:22 - 2021-05-20 16:22 - 000000000 ____D C:\Users\Admin\AppData\Local\ZHP 2021-05-20 16:19 - 2021-05-20 16:19 - 003469464 _____ (Nicolas Coolman) C:\Users\Jean-Pierre\Desktop\ZHPSuite.exe 2021-05-20 11:59 - 2021-05-20 11:59 - 000220752 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys 2021-05-18 14:56 - 2021-05-18 14:56 - 000001726 _____ C:\Users\Admin\Desktop\XnViewMP.lnk 2021-05-18 14:39 - 2021-05-18 14:39 - 000000000 ____D C:\Users\Jean-Pierre\AppData\Roaming\Logitech 2021-05-18 14:16 - 2021-05-20 17:55 - 000000000 ____D C:\Users\Jean-Pierre\AppData\Local\CyberGhost 2021-05-17 14:25 - 2021-05-20 17:57 - 000000000 ____D C:\Users\Admin\AppData\Local\CyberGhost 2021-05-17 14:25 - 2021-05-17 14:27 - 000000000 ____D C:\Program Files\CyberGhost 8 2021-05-17 14:25 - 2021-05-17 14:25 - 000001078 _____ C:\Users\Admin\Desktop\CyberGhost 8.lnk 2021-05-17 14:25 - 2021-05-17 14:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberGhost 8 2021-05-17 14:25 - 2021-05-17 14:25 - 000000000 ____D C:\Program Files\TAP-Windows 2021-05-15 15:20 - 2021-05-15 15:21 - 000000000 ____D C:\Users\Jean-Pierre\Desktop\Ordinateur lent 2021-05-14 15:49 - 2021-05-14 16:34 - 000000000 ____D C:\Users\Jean-Pierre\Desktop\Pour Frizbiz 2021-05-13 17:36 - 2021-05-13 17:36 - 000003382 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1440033328-4102027548-317780136-1003 2021-05-13 17:36 - 2021-05-13 17:36 - 000002468 _____ C:\Users\Jean-Pierre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-05-12 14:34 - 2021-05-12 14:34 - 000402745 _____ C:\Users\Jean-Pierre\Documents\img20210512_14344685.pdf 2021-05-12 13:52 - 2021-05-12 13:52 - 000164168 _____ C:\Windows\system32\cmdiag.exe 2021-05-12 13:52 - 2021-05-12 13:52 - 000103936 _____ C:\Windows\system32\cmimageworker.exe 2021-05-12 13:52 - 2021-05-12 13:52 - 000011351 _____ C:\Windows\system32\DrtmAuthTxt.wim 2021-05-11 17:09 - 2021-05-11 17:09 - 000002143 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2021-05-11 14:44 - 2021-05-11 14:44 - 000003374 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1440033328-4102027548-317780136-1008 2021-05-11 14:44 - 2021-05-11 14:44 - 000002456 _____ C:\Users\Michaël\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-05-10 15:43 - 2021-05-10 15:43 - 000025171 _____ C:\Users\Jean-Pierre\AppData\Local\recently-used.xbel 2021-05-07 13:50 - 2021-05-07 13:50 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla 2021-05-07 11:50 - 2021-05-09 14:02 - 000000000 ____D C:\Program Files\Mozilla Firefox 2021-05-03 13:49 - 2021-05-03 13:49 - 000248992 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys 2021-05-02 16:36 - 2021-05-02 16:36 - 002755584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2021-05-02 16:36 - 2021-05-02 16:36 - 002755584 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2021-05-02 16:36 - 2021-05-02 16:36 - 001823816 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2021-05-02 16:36 - 2021-05-02 16:36 - 001687040 _____ C:\Windows\system32\libcrypto.dll 2021-05-02 16:36 - 2021-05-02 16:36 - 001393504 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2021-05-02 16:36 - 2021-05-02 16:36 - 001314120 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi 2021-05-02 16:36 - 2021-05-02 16:36 - 001163776 _____ C:\Windows\system32\MBR2GPT.EXE 2021-05-02 16:36 - 2021-05-02 16:36 - 000700928 _____ C:\Windows\system32\FsNVSDeviceSource.dll 2021-05-02 16:36 - 2021-05-02 16:36 - 000165888 _____ C:\Windows\system32\DataStoreCacheDumpTool.exe 2021-05-02 16:36 - 2021-05-02 16:36 - 000157184 _____ C:\Windows\system32\uwfcsp.dll 2021-05-02 16:36 - 2021-05-02 16:36 - 000153600 _____ C:\Windows\system32\uwfcfgmgmt.dll 2021-05-02 16:36 - 2021-05-02 16:36 - 000060928 _____ C:\Windows\system32\runexehelper.exe 2021-05-02 16:36 - 2021-05-02 16:36 - 000014848 _____ C:\Windows\system32\hnsproxy.dll 2021-05-02 16:36 - 2021-05-02 16:36 - 000013312 _____ C:\Windows\system32\agentactivationruntimestarter.exe 2021-04-26 15:11 - 2021-05-04 14:49 - 000000000 ____D C:\Users\Jean-Pierre\Desktop\Brin de muguet 2021-04-26 14:24 - 2021-04-26 14:25 - 062359584 _____ (Gougelet Pierre-e ) C:\Users\Jean-Pierre\Downloads\XnViewMP-win-x64.exe 2021-04-24 17:05 - 2021-04-24 17:05 - 000000000 ____D C:\Users\Jean-Pierre\AppData\Roaming\Google 2021-04-24 16:46 - 2021-04-24 16:46 - 000000000 ____D C:\ProgramData\Google 2021-04-24 15:06 - 2021-04-24 15:06 - 000000000 ____D C:\Users\Jean-Pierre\Downloads\gimp_instagram_effects 2021-04-24 15:05 - 2021-04-24 15:05 - 000032694 _____ C:\Users\Jean-Pierre\Downloads\gimp_instagram_effects.zip 2021-04-24 14:45 - 2021-04-26 15:31 - 000000000 ____D C:\Users\Jean-Pierre\AppData\Roaming\gmic 2021-04-24 14:38 - 2021-04-07 17:52 - 000000000 ____D C:\Users\Jean-Pierre\Downloads\gmic_gimp_qt 2021-04-24 14:37 - 2021-04-24 14:38 - 034069021 _____ C:\Users\Jean-Pierre\Downloads\gmic_2.9.7_gimp2.10_win64.zip ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-05-20 17:56 - 2019-02-06 18:08 - 000000000 ____D C:\ProgramData\Mozilla 2021-05-20 17:56 - 2017-03-12 19:14 - 000000000 ____D C:\ProgramData\Norton 2021-05-20 17:55 - 2020-10-18 11:35 - 000001469 _____ C:\Users\Admin\Desktop\Norton Installation Files.lnk 2021-05-20 17:55 - 2019-10-06 18:19 - 000000000 ____D C:\Users\Admin\AppData\LocalLow\Mozilla 2021-05-20 17:55 - 2019-03-16 18:54 - 000000000 ____D C:\ProgramData\ProductData 2021-05-20 17:54 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-05-20 17:54 - 2019-10-05 16:12 - 000000000 ____D C:\Users\Jean-Pierre\AppData\LocalLow\Mozilla 2021-05-20 17:30 - 2020-09-26 15:37 - 000004180 _____ C:\Windows\system32\Tasks\User_Feed_Synchronization-{1CE0857E-8726-4AAF-B791-660174B19A07} 2021-05-20 17:19 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness 2021-05-20 17:10 - 2020-10-13 17:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 2021-05-20 17:10 - 2019-03-16 18:52 - 000000000 ____D C:\Users\Admin\AppData\Roaming\IObit 2021-05-20 17:10 - 2017-03-12 18:01 - 000000000 ___RD C:\Users\Admin\OneDrive 2021-05-20 17:08 - 2020-09-26 15:37 - 000003442 _____ C:\Windows\system32\Tasks\SU_AutoUpdate 2021-05-20 17:07 - 2019-08-07 16:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Software Updater 2021-05-20 16:44 - 2019-10-05 14:22 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData 2021-05-20 16:44 - 2019-10-05 14:22 - 000000000 ___HD C:\ProgramData\Documents\AdobeGCData 2021-05-20 16:36 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF 2021-05-20 16:36 - 2018-01-30 18:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech 2021-05-20 16:36 - 2018-01-30 18:18 - 000000000 ____D C:\Program Files\Common Files\LogiShrd 2021-05-20 16:36 - 2017-03-15 18:35 - 000000000 ____D C:\ProgramData\Logishrd 2021-05-20 16:35 - 2018-07-16 17:14 - 000000000 ____D C:\Users\Admin\AppData\Local\D3DSCache 2021-05-20 16:34 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2021-05-20 16:34 - 2017-11-18 15:53 - 000000000 ____D C:\Users\Admin\AppData\Local\Packages 2021-05-20 16:32 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel 2021-05-20 16:20 - 2021-04-12 16:28 - 000000000 ____D C:\Users\Jean-Pierre\Desktop\VACCINATION 2021-05-20 13:42 - 2018-01-20 14:36 - 000000000 ____D C:\Program Files\CCleaner 2021-05-20 13:34 - 2021-04-12 16:28 - 000001469 _____ C:\Users\Jean-Pierre\Desktop\Norton Installation Files.lnk 2021-05-20 13:34 - 2020-09-26 15:35 - 000000000 ____D C:\Windows\system32\SleepStudy 2021-05-20 12:06 - 2020-09-26 15:41 - 001772726 _____ C:\Windows\system32\PerfStringBackup.INI 2021-05-20 12:06 - 2019-12-07 16:50 - 000791762 _____ C:\Windows\system32\perfh00C.dat 2021-05-20 12:06 - 2019-12-07 16:50 - 000149928 _____ C:\Windows\system32\perfc00C.dat 2021-05-20 11:59 - 2020-09-26 15:37 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2021-05-20 11:59 - 2020-06-22 19:33 - 000008192 ___SH C:\DumpStack.log.tmp 2021-05-19 19:23 - 2019-12-07 11:03 - 001048576 _____ C:\Windows\system32\config\BBI 2021-05-19 15:47 - 2019-11-16 16:13 - 000000000 ____D C:\Users\Jean-Pierre\AppData\Local\PlaceholderTileLogoFolder 2021-05-19 15:47 - 2017-11-18 15:53 - 000000000 ____D C:\Users\Jean-Pierre\AppData\Local\Packages 2021-05-18 14:56 - 2017-09-12 14:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XnViewMP 2021-05-18 14:56 - 2017-09-12 14:53 - 000000000 ____D C:\Program Files\XnViewMP 2021-05-18 14:52 - 2020-10-18 14:05 - 000000000 ____D C:\Program Files\Common Files\Symantec Shared 2021-05-18 14:33 - 2018-06-02 15:58 - 000000000 ____D C:\Windows\system32\Drivers\wd 2021-05-18 14:31 - 2019-09-10 14:53 - 000000000 ____D C:\Users\Admin\AppData\Local\CrashDumps 2021-05-18 14:23 - 2020-10-18 12:03 - 000799104 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2021-05-16 12:00 - 2018-03-10 13:06 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2021-05-15 14:20 - 2019-10-05 16:12 - 000000000 ____D C:\Users\Jean-Pierre\AppData\Local\CrashDumps 2021-05-15 05:15 - 2020-08-08 16:59 - 000002451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-05-15 05:15 - 2020-08-08 16:59 - 000002289 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2021-05-13 17:54 - 2017-03-15 18:46 - 000000000 ____D C:\Users\Jean-Pierre\AppData\Roaming\vlc 2021-05-12 18:36 - 2020-09-26 15:35 - 002187256 _____ C:\Windows\system32\FNTCACHE.DAT 2021-05-12 18:35 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2021-05-12 18:35 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources 2021-05-12 18:35 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr 2021-05-12 13:53 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp 2021-05-12 13:47 - 2017-02-03 12:50 - 000000000 ____D C:\Windows\system32\MRT 2021-05-12 13:44 - 2017-02-03 12:50 - 132732536 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2021-05-12 13:43 - 2019-12-07 11:03 - 000032768 _____ C:\Windows\system32\config\ELAM 2021-05-11 14:44 - 2020-05-28 18:19 - 000000000 ___RD C:\Users\Michaël\OneDrive 2021-05-11 14:44 - 2020-05-28 18:17 - 000000000 ____D C:\Users\Michaël\AppData\Local\Packages 2021-05-10 15:44 - 2019-09-09 14:04 - 000000000 ____D C:\Users\Jean-Pierre\AppData\Local\babl-0.1 2021-05-10 15:43 - 2017-09-27 16:08 - 000000000 ____D C:\Users\Jean-Pierre\AppData\Local\gtk-2.0 2021-05-09 14:27 - 2017-03-13 12:49 - 000000000 ____D C:\Program Files\Common Files\AV 2021-05-09 14:02 - 2019-10-12 14:55 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2021-05-07 14:14 - 2021-04-12 16:28 - 000000000 ___RD C:\Users\Jean-Pierre\Desktop\Banques 2021-05-07 13:50 - 2020-05-31 15:04 - 000001018 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2021-05-04 14:48 - 2021-04-12 16:26 - 000000000 ____D C:\Users\Jean-Pierre\Nouveau dossier 2021-05-02 16:39 - 2019-12-07 16:51 - 000000000 ____D C:\Windows\system32\OpenSSH 2021-05-02 16:39 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\PrintDialog 2021-05-02 16:39 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata 2021-05-02 16:39 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\setup 2021-05-02 16:39 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\oobe 2021-05-02 16:39 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\lt-LT 2021-05-02 16:39 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Dism 2021-05-02 16:39 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinMetadata 2021-05-02 16:39 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\SystemResetPlatform 2021-05-02 16:39 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\setup 2021-05-02 16:39 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe 2021-05-02 16:39 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\lt-LT 2021-05-02 16:39 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Dism 2021-05-02 16:39 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\Provisioning 2021-05-02 16:39 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\PolicyDefinitions 2021-05-02 16:39 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\DiagTrack 2021-05-02 15:46 - 2018-07-20 16:55 - 000000000 ____D C:\Users\Jean-Pierre\AppData\Local\D3DSCache 2021-04-29 12:56 - 2021-03-11 10:31 - 000000000 ____D C:\Users\Jean-Pierre\AppData\LocalLow\Norton 2021-04-26 12:09 - 2020-09-26 15:37 - 000003634 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-04-26 12:09 - 2020-09-26 15:37 - 000003510 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2021-04-25 17:23 - 2017-03-16 17:51 - 000000000 ____D C:\Users\Jean-Pierre\AppData\Roaming\XnView 2021-04-24 16:46 - 2019-03-19 15:25 - 000000000 ____D C:\Program Files\Google 2021-04-24 16:46 - 2017-03-29 17:52 - 000000000 ____D C:\Users\Jean-Pierre\AppData\Local\Google 2021-04-24 16:46 - 2017-03-13 17:43 - 000000000 ____D C:\Users\Jean-Pierre\AppData\Roaming\Adobe 2021-04-23 15:38 - 2019-11-19 15:45 - 000199128 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys 2021-04-22 15:25 - 2021-04-12 16:28 - 000000000 ____D C:\Users\Jean-Pierre\Desktop\Table de jardin Eminza 2021-04-21 10:35 - 2021-04-19 16:05 - 000000733 _____ C:\Users\Jean-Pierre\Desktop\GIMP_UP.lnk 2021-04-21 10:32 - 2020-09-26 15:37 - 000003588 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA 2021-04-21 10:32 - 2020-09-26 15:37 - 000003464 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore ==================== Fichiers à la racine de certains dossiers ======== 2019-04-05 14:37 - 2019-04-05 14:49 - 000000132 _____ () C:\Users\Admin\AppData\Roaming\Préfs Format BMP Adobe CS5 2018-06-13 18:39 - 2020-09-25 16:34 - 000000132 _____ () C:\Users\Admin\AppData\Roaming\Préfs Format PNG Adobe CS5 2019-03-28 19:34 - 2019-03-28 19:34 - 000000000 _____ () C:\Users\Admin\AppData\Local\oobelibMkey.log 2018-07-24 15:20 - 2018-07-24 15:20 - 000007597 _____ () C:\Users\Admin\AppData\Local\Resmon.ResmonCfg ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================