Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 02-06-2021 Exécuté par Mr_GT (administrateur) sur DESKTOP-RUT1CQG (02-06-2021 21:08:41) Exécuté depuis C:\Users\Mr_GT\Desktop Profils chargés: Mr_GT Platform: Windows 10 Pro Version 2004 19041.985 (X64) Langue: Français (France) Navigateur par défaut: Chrome Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) () [Fichier non signé] C:\Windows\SysWOW64\ASGT.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe <2> (Adobe Systems Incorporated -> ) D:\Logiciels\Photosphop\Adobe Photoshop CC 2019\Required\Plug-ins\Spaces\Adobe Spaces Helper.exe <3> (Adobe Systems Incorporated -> Adobe Systems Incorporated) [Fichier non signé] D:\Logiciels\Photosphop\Adobe Photoshop CC 2019\Photoshop.exe (Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe (Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Creative Cloud Libraries\CCLibrary.exe (Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe (Adobe Systems Incorporated -> Adobe Systems Incorporated) D:\Logiciels\Photosphop\Adobe Photoshop CC 2019\Required\CEP\CEPHtmlEngine\CEPHtmlEngine.exe <6> (Adobe Systems Incorporated -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (Adobe Systems Incorporated) C:\Program Files\WindowsApps\ReaderNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe (Adobe Systems, Incorporated -> Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\acrotray.exe (Advanced Micro Devices, Inc. -> ) C:\Program Files\Common Files\ATI Technologies\DSEManager.exe (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\c0360470.inf_amd64_b06c374aee20d185\B360357\atieclxx.exe (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\c0360470.inf_amd64_b06c374aee20d185\B360357\atiesrxx.exe (AVB Disc Soft, SIA -> Disc Soft Ltd) D:\Logiciels\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd) D:\Logiciels\DAEMON Tools Lite\DTShellHlp.exe (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\DiscoverySrv.exe (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\ProductAgentService.exe (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Antivirus Free\bdagent.exe (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Antivirus Free\bdredline.exe (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Antivirus Free\updatesrv.exe (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Antivirus Free\vsserv.exe (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Antivirus Free\vsservppl.exe (Discord Inc. -> Discord Inc.) C:\Users\Mr_GT\AppData\Local\Discord\app-1.0.9002\Discord.exe <6> (Electronic Arts, Inc. -> Electronic Arts) D:\Jeux\Origin\OriginWebHelperService.exe (Evernote Corporation -> Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) D:\Logiciels\Evernote\EvernoteClipper.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <57> (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.82\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.82\GoogleCrashHandler64.exe (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (Huawei Technologies Co., Ltd. -> ) [Fichier non signé] C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe (Intel(R) Intel Network Drivers -> Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office16\EXCEL.EXE (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office16\WINWORD.EXE (Microsoft Corporation -> Microsoft Corporation) C:\Users\Mr_GT\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_3.2105.19601.0_x64__8wekyb3d8bbwe\Cortana.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20920.0_x64__8wekyb3d8bbwe\HxOutlook.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20920.0_x64__8wekyb3d8bbwe\HxTsr.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12104.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.621.4222.0_x64__8wekyb3d8bbwe\GameBar.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.621.4222.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\schtasks.exe (Nicolas Coolman -> Nicolas Coolman) [Fichier non signé] C:\Users\Mr_GT\AppData\Roaming\ZHP\ZHPSuite.exe (Node.js Foundation -> Node.js) C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\libs\node.exe (Node.js Foundation -> Node.js) C:\Program Files (x86)\Common Files\Adobe\Creative Cloud Libraries\libs\node.exe (Node.js Foundation -> Node.js) D:\Logiciels\Photosphop\Adobe Photoshop CC 2019\node.exe (Open Source Developer, Pierre Noguès -> Apache Software Foundation) C:\Program Files (x86)\serposcope\bin\serposcope-service.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Shenzhen Jia Xing Investment Co., Ltd. -> AimerSoft) C:\Program Files (x86)\Common Files\Aimersoft\Aimersoft Helper Compact\ASHelper.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) D:\Logiciels\TeamViewer\TeamViewer_Service.exe (WhatsApp, Inc -> WhatsApp) C:\Users\Mr_GT\AppData\Local\WhatsApp\app-2.2119.6\WhatsApp.exe <7> ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9274304 2018-05-30] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM-x32\...\Run: [Aimersoft Helper Compact.exe] => C:\Program Files (x86)\Common Files\Aimersoft\Aimersoft Helper Compact\ASHelper.exe [2138272 2016-10-08] (Shenzhen Jia Xing Investment Co., Ltd. -> AimerSoft) HKU\S-1-5-21-3351771493-749409139-3151566472-1001\...\Run: [Discord] => C:\Users\Mr_GT\AppData\Local\Discord\Update.exe [1512760 2020-12-03] (Discord Inc. -> GitHub) HKU\S-1-5-21-3351771493-749409139-3151566472-1001\...\Run: [HoldemManager.Server] => C:\Users\Mr_GT\AppData\Roaming\Max Value Software\Holdem Manager\3.0\HoldemManager.Server.lnk [533 2018-03-04] () [Fichier non signé] HKU\S-1-5-21-3351771493-749409139-3151566472-1001\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [91016568 2020-12-02] (Skype Software Sarl -> Skype Technologies S.A.) HKU\S-1-5-21-3351771493-749409139-3151566472-1001\...\Run: [Battle.net] => D:\Jeux\Battle.net\Battle.net.exe [1136104 2020-05-28] (Blizzard Entertainment, Inc. -> Blizzard Entertainment) HKU\S-1-5-21-3351771493-749409139-3151566472-1001\...\Run: [EADM] => D:\Jeux\Origin\Origin.exe [3137808 2020-01-15] (Electronic Arts, Inc. -> Electronic Arts) HKU\S-1-5-21-3351771493-749409139-3151566472-1001\...\Run: [Adobe Reader Synchronizer] => C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe [5536440 2021-04-27] (Adobe Inc. -> Adobe Systems Incorporated) HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\Windows\system32\AdobePDF.dll [54944 2015-03-17] (Adobe Systems, Incorporated -> Adobe Systems Inc) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\90.0.4430.212\Installer\chrmstp.exe [2021-05-13] (Google LLC -> Google LLC) Startup: C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\EvernoteClipper.lnk [2020-06-11] ShortcutTarget: EvernoteClipper.lnk -> D:\Logiciels\Evernote\EvernoteClipper.exe (Evernote Corporation -> Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) Startup: C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\serposcope-manager.lnk [2020-05-21] ShortcutTarget: serposcope-manager.lnk -> C:\Program Files (x86)\serposcope\bin\serposcopew.exe (Open Source Developer, Pierre Noguès -> Apache Software Foundation) ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {03C5EFDE-1489-4B7B-888C-E94A7782EBF3} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\BIN64\InstallManagerApp.exe [468992 2019-03-27] (Advanced Micro Devices, Inc.) [Fichier non signé] Task: {0B0AC2AC-A6E8-4B8C-BC75-98281425C152} - System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => C:\Program Files\Bitdefender Agent\WatchDog.exe [888232 2021-01-29] (Bitdefender SRL -> Bitdefender) Task: {100EA919-9BE9-413A-A17A-80E98E4F7552} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [416432 2015-07-31] (Microsoft Corporation -> Microsoft Corporation) Task: {1AA2711E-0B48-41CA-8B14-8D477DBE744B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2017-12-14] (Google Inc -> Google Inc.) Task: {2758EE25-B867-42F2-A845-41FD12E55C1B} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe Task: {452E16AF-4A23-4CB3-B767-D95C865C101D} - System32\Tasks\HPCustParticipation HP ENVY Photo 6200 series => C:\Program Files\HP\HP ENVY Photo 6200 series\Bin\HPCustPartic.exe [6659488 2019-03-19] (HP Inc -> HP Inc.) Task: {4F2325A1-28B1-4297-A26A-C05CDA0A6CE7} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [61624 2020-08-21] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) Task: {5CC25D6B-71CA-4272-8ED3-E94F8380B8AD} - System32\Tasks\ROCCAT DEVICE SERVICE => D:\Logiciels\Roccat Suora\ROCCAT Swarm\ROCCAT_dev_service.exe Task: {7352D583-7304-46B3-B71B-8B5F1DE69E93} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.) Task: {8C8D0A53-399E-4119-94CC-C35888775CDD} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2017-12-14] (Google Inc -> Google Inc.) Task: {AA29C42D-FC43-4D28-850A-BE7275C96D3A} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [69304 2020-08-21] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) Task: {AC479E01-B588-4A75-81CC-E3E6FE65307E} - System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [642544 2021-05-12] (Mozilla Corporation -> Mozilla Foundation) Task: {BCC22DA0-25C9-4FFA-A271-79E6DDD239E6} - System32\Tasks\G2MUpdateTask-S-1-5-21-3351771493-749409139-3151566472-1001 => C:\Users\Mr_GT\AppData\Local\GoToMeeting\19709\g2mupdate.exe [31320 2021-06-01] (LogMeIn, Inc. -> LogMeIn, Inc.) Task: {E9BC5147-7B9B-4161-B28B-D3DD75D3267A} - System32\Tasks\G2MUploadTask-S-1-5-21-3351771493-749409139-3151566472-1001 => C:\Users\Mr_GT\AppData\Local\GoToMeeting\19709\g2mupload.exe [31320 2021-06-01] (LogMeIn, Inc. -> LogMeIn, Inc.) Task: {FEF504F6-A478-4B18-A492-9DBD57E35F4F} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [468992 2019-03-27] (Advanced Micro Devices, Inc.) [Fichier non signé] (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\G2MUpdateTask-S-1-5-21-3351771493-749409139-3151566472-1001.job => C:\Users\Mr_GT\AppData\Local\GoToMeeting\19709\g2mupdate.exe Task: C:\WINDOWS\Tasks\G2MUploadTask-S-1-5-21-3351771493-749409139-3151566472-1001.job => C:\Users\Mr_GT\AppData\Local\GoToMeeting\19709\g2mupload.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 89.2.0.1 89.2.0.2 Tcpip\..\Interfaces\{36c782bc-b08a-4b7d-81b2-0c7d35f22b2e}: [DhcpNameServer] 89.2.0.1 89.2.0.2 Edge: ======= Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)] Edge Extension: (Pas de nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [non trouvé(e)] Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)] Edge Extension: (Pas de nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [non trouvé(e)] Edge DefaultProfile: Default Edge Profile: C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default [2021-06-02] Edge Notifications: Default -> hxxps://fr.aliexpress.com Edge StartupUrls: Default -> "hxxps://www.google.fr/" Edge Session Restore: Default -> est activé. Edge Extension: (Recherche de prix par image pour Alibaba) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\aadbahhifnekkkcbapdfandpimaoacmj [2021-06-01] Edge Extension: (Alitools assistant shopping) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\abidfmpblafnglcjachhodnellaopilc [2021-06-01] Edge Extension: (Google SERP counter) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bfiijneafemhklkccnjijmcniffmiode [2021-06-01] Edge Extension: (nombre de mots) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bglkkgmmlpelbdokjlgbpfkkoplajoop [2021-06-01] Edge Extension: (ColorZilla) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bhlhnicpbhignbdhedgjhgdocnmhomnp [2021-06-01] Edge Extension: (Shoptimate : comparateur de prix instantané) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bibdombdcdbbnfdjkaajfgnfhlapibde [2021-06-01] Edge Extension: (Pushbullet) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\chlffgpmiacpedhhbkiomidkjlcfhogd [2021-06-01] Edge Extension: (Alexa Traffic Rank) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel [2021-06-01] Edge Extension: (Image Downloader) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\cnpniohnfphhjihaiiggeabnkjhpaldj [2021-06-01] Edge Extension: (AliSave | Télécharger les images & videos AliExpress) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dinddanocgoljhkgnmmefjgiohilbcac [2021-06-01] Edge Extension: (Windscribe - Free Proxy and Ad Blocker) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dkkdbpgldnmkhcliffjpajcfdjkcaddf [2021-06-01] Edge Extension: (Alitools assistant shopping) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\eenflijjbchafephdplkdmeenekabdfb [2021-06-01] Edge Extension: (Keepa - Amazon Price Tracker) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ejefaeioamebhekmfaclajddbpnnobje [2021-06-01] Edge Extension: (Facebook Pixel Helper) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fdgfkebogiimcoedlicjlajpkdmockpc [2021-06-01] Edge Extension: (Le bloc - notes en ligne) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fefodpegbocmidnfphgggnjcicipaibk [2021-06-01] Edge Extension: (Word Counter Plus) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fpjegfbcdijjfkceenlfoehpcakfgldj [2021-06-01] Edge Extension: (SEO Minion) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\giihipjfimkajhlcilipnjeohabimjhi [2021-06-01] Edge Extension: (Wappalyzer) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gppongmhjkpfnbhagpmjfkannfbllamg [2021-06-01] Edge Extension: (Keywords Everywhere - Keyword Tool) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hbapdpeemoojbophdfndmlgdhppljgmp [2021-06-02] Edge Extension: (Correcteur de texte — LanguageTool) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hfjadhjooeceemgojogkhlppanjkbobc [2021-06-01] Edge Extension: (IGRAAL - Cashback & codes promo) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hgfjoaookbahbhinopgfoiajfijfcdhm [2021-06-01] Edge Extension: (Windscribe - Free Proxy and Ad Blocker) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hnmpcagpplmpfojmgmnngilcnanddlhb [2021-06-01] Edge Extension: (WhatFont) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jabopobgcpjmedljpbcaablpmlmfcogm [2021-06-01] Edge Extension: (Aliexpress Search by image) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jkcacbjiofjgbnaknoojjboeiinempoa [2021-06-01] Edge Extension: (AliExpress: Search similar products) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\joghfdanngcpobcbmdapcemgbjphihag [2021-06-01] Edge Extension: (Commerce Inspector) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kefmekfmfacbdefimlancoccpocmgmpb [2021-06-01] Edge Extension: (IGRAAL - Cashback & codes promo) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kmhkepipobnjllejbafajoemahjejdcm [2021-06-01] Edge Extension: (Alt Text Tester) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\koldhcllpbdfcdpfpbldbicbgddglodk [2021-06-01] Edge Extension: (Linkclump) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\lfpjkncokllnfokkgpkobnkbkmelfefj [2021-06-01] Edge Extension: (Easy AliExpress Video Finder) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\lkcandoekjlnkipbdffedlobpoldojli [2021-06-01] Edge Extension: (Evernote Web Clipper) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\llhcnbijpnechllogkacbcjmkcgjbjfi [2021-06-01] Edge Extension: (Extension Google Keep pour Chrome) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\lpcaedmchfhocbbapmcbpinfpgnhiddi [2021-06-01] Edge Extension: (DSers - AliExpress.com Product Importer) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mmanaflgaempokjfbeeabkadnkoidjam [2021-06-01] Edge Extension: (Ali Hunter - AliExpress Product Tracker) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mpajidobdpdigheplhpfggmeldjcpgfh [2021-06-01] Edge Extension: (AliSave | Télécharger les images & videos AliExpress) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\nbhfcmbdimdbbclfngkjfmgmjhnkjocl [2021-06-01] Edge Extension: (AdBlock — le meilleur bloqueur de pubs) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ndcileolkflehcjpmjnfbnaibdcgglog [2021-06-01] Edge Extension: (Mailtrack pour Gmail: Email tracking) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ndnaehgpjlnokgebbaldlmgkapkpjkkb [2021-06-01] Edge Extension: (Save Image As PNG) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\nkokmeaibnajheohncaamjggkanfbphi [2021-06-01] Edge Extension: (Ubersuggest - SEO et découverte de mots-clés) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\nmpgaoofmjlimabncmnmnopjabbflegf [2021-06-01] Edge Extension: (Correcteur de texte — LanguageTool) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\oldceeleldhonbafppcapldpdifcinji [2021-06-01] Edge Extension: (Reverso - Traduction, dictionnaire) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\onhiacboedfinnofagfgoaanfedhmfab [2021-06-01] Edge Extension: (Word Count) - C:\Users\Mr_GT\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\pnngehidikgomgfjbpffonkeimgbpjlh [2021-06-01] FireFox: ======== FF DefaultProfile: y355bifu.default FF ProfilePath: C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default [2021-06-02] FF Homepage: Mozilla\Firefox\Profiles\y355bifu.default -> hxxps://www.malwarebytes.org/restorebrowser/ FF Notifications: Mozilla\Firefox\Profiles\y355bifu.default -> hxxps://downloader.la; hxxps://www.facebook.com; hxxps://message.alibaba.com FF Extension: (Avast Online Security) - C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\Extensions\wrc@avast.com.xpi [2021-02-22] FF Extension: (Historique des prix sur 6 mois, produits similaires, recherche d'article par image, évaluations du vendeur.) - C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\Extensions\{019f5290-6afb-4863-bc31-87cc0b6adb25}.xpi [2021-06-02] FF Extension: (Flash and Video Download) - C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\Extensions\{bee6eb20-01e0-ebd1-da83-080329fb9a3a}.xpi [2018-05-18] FF Extension: (Télécharge les images et vidéos des produits AliExpress en un clic!) - C:\Users\Mr_GT\AppData\Roaming\Mozilla\Firefox\Profiles\y355bifu.default\Extensions\{ddf5273a-f9df-4415-9dd9-034ce0b59098}.xpi [2020-04-02] FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.15@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn FF Extension: (Adobe Acrobat DC - Create PDF) - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn [2017-12-14] [] FF Plugin: @videolan.org/vlc,version=3.0.6 -> D:\Logiciels\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-07-29] (Adobe Systems Incorporated -> Adobe Systems) FF Plugin-x32: @java.com/DTPlugin,version=11.251.2 -> D:\Logiciels\Nouveau dossier\bin\dtplugin\npDeployJava1.dll [2020-05-21] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.251.2 -> D:\Logiciels\Nouveau dossier\bin\plugin2\npjp2.dll [2020-05-21] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-03-15] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @videolan.org/vlc,version=2.2.8 -> D:\Logiciels\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.2 -> D:\Logiciels\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN) FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2016-02-26] (Adobe Systems, Incorporated -> Adobe Systems Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-04-27] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-07-29] (Adobe Systems Incorporated -> Adobe Systems) FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\bd_js_config.js [2020-12-14] <==== ATTENTION (Pointe vers un fichier *.cfg) FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\bd_config.cfg [2020-12-14] <==== ATTENTION Chrome: ======= CHR Profile: C:\Users\Mr_GT\AppData\Local\Google\Chrome\User Data\Default [2021-06-02] CHR Notifications: Default -> hxxps://best.aliexpress.com; hxxps://business.facebook.com; hxxps://daniloduchesnes.com; hxxps://fr.aliexpress.com; hxxps://meet.google.com; hxxps://message.alibaba.com; hxxps://thepaut-serge.myshopify.com; hxxps://thierryvanoffe.com; hxxps://www.bizay.fr; hxxps://www.etisalat.ae; hxxps://www.facebook.com; hxxps://www.fnac.com; hxxps://www.instagram.com; hxxps://www.latribune.fr; hxxps://www.mp3juices.cc; hxxps://www.netflix.com; hxxps://www.qare.fr; hxxps://www.techadvisor.fr; hxxps://www.techwyse.com; hxxps://www.tradingview.com; hxxps://www.winamax.fr; hxxps://www.youtube.com CHR Session Restore: Default -> est activé. CHR Extension: (Recherche de prix par image pour Alibaba) - C:\Users\Mr_GT\AppData\Local\Google\Chrome\User Data\Default\Extensions\aadbahhifnekkkcbapdfandpimaoacmj [2021-06-01] CHR Extension: (Google SERP counter) - C:\Users\Mr_GT\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfiijneafemhklkccnjijmcniffmiode [2021-06-01] CHR Extension: (ColorZilla) - C:\Users\Mr_GT\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhlhnicpbhignbdhedgjhgdocnmhomnp [2021-06-01] CHR Extension: (Alitools assistant shopping) - C:\Users\Mr_GT\AppData\Local\Google\Chrome\User Data\Default\Extensions\eenflijjbchafephdplkdmeenekabdfb [2021-06-01] CHR Extension: (Facebook Pixel Helper) - C:\Users\Mr_GT\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdgfkebogiimcoedlicjlajpkdmockpc [2021-06-01] CHR Extension: (Le bloc - notes en ligne) - C:\Users\Mr_GT\AppData\Local\Google\Chrome\User Data\Default\Extensions\fefodpegbocmidnfphgggnjcicipaibk [2021-06-01] CHR Extension: (AdBlock — le meilleur bloqueur de pubs) - C:\Users\Mr_GT\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2021-06-01] CHR Extension: (SEO Minion) - C:\Users\Mr_GT\AppData\Local\Google\Chrome\User Data\Default\Extensions\giihipjfimkajhlcilipnjeohabimjhi [2021-06-01] CHR Extension: (Keywords Everywhere - Keyword Tool) - C:\Users\Mr_GT\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbapdpeemoojbophdfndmlgdhppljgmp [2021-06-02] CHR Extension: (Windscribe - Free Proxy and Ad Blocker) - C:\Users\Mr_GT\AppData\Local\Google\Chrome\User Data\Default\Extensions\hnmpcagpplmpfojmgmnngilcnanddlhb [2021-06-01] CHR Extension: (WhatFont) - C:\Users\Mr_GT\AppData\Local\Google\Chrome\User Data\Default\Extensions\jabopobgcpjmedljpbcaablpmlmfcogm [2021-06-01] CHR Extension: (Aliexpress Search by image) - C:\Users\Mr_GT\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkcacbjiofjgbnaknoojjboeiinempoa [2021-06-01] CHR Extension: (IGRAAL - Cashback & codes promo) - C:\Users\Mr_GT\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmhkepipobnjllejbafajoemahjejdcm [2021-06-01] CHR Extension: (DSers - AliExpress.com Product Importer) - C:\Users\Mr_GT\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmanaflgaempokjfbeeabkadnkoidjam [2021-06-01] CHR Extension: (Ali Hunter - AliExpress Product Tracker) - C:\Users\Mr_GT\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpajidobdpdigheplhpfggmeldjcpgfh [2021-06-01] CHR Extension: (AliSave | Télécharger les images & videos AliExpress) - C:\Users\Mr_GT\AppData\Local\Google\Chrome\User Data\Default\Extensions\nbhfcmbdimdbbclfngkjfmgmjhnkjocl [2021-06-01] CHR Extension: (Mailtrack pour Gmail: Email tracking) - C:\Users\Mr_GT\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndnaehgpjlnokgebbaldlmgkapkpjkkb [2021-06-01] CHR Extension: (Keepa - Amazon Price Tracker) - C:\Users\Mr_GT\AppData\Local\Google\Chrome\User Data\Default\Extensions\neebplgakaahbhdphmkckjjcegoiijjo [2021-06-02] CHR Extension: (Save Image As PNG) - C:\Users\Mr_GT\AppData\Local\Google\Chrome\User Data\Default\Extensions\nkokmeaibnajheohncaamjggkanfbphi [2021-06-01] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Mr_GT\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-06-01] CHR Extension: (Ubersuggest - SEO et découverte de mots-clés) - C:\Users\Mr_GT\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmpgaoofmjlimabncmnmnopjabbflegf [2021-06-01] CHR Extension: (Correcteur de texte — LanguageTool) - C:\Users\Mr_GT\AppData\Local\Google\Chrome\User Data\Default\Extensions\oldceeleldhonbafppcapldpdifcinji [2021-06-01] CHR Extension: (Evernote Web Clipper) - C:\Users\Mr_GT\AppData\Local\Google\Chrome\User Data\Default\Extensions\pioclpoplcdbaefihamjohnefbikjilc [2021-06-01] CHR Extension: (Chrome Media Router) - C:\Users\Mr_GT\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-06-01] CHR Extension: (Majestic Backlink Analyzer) - C:\Users\Mr_GT\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnmjaflneibolacpepklokkjnakmikmg [2021-06-01] CHR Extension: (Word Count) - C:\Users\Mr_GT\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnngehidikgomgfjbpffonkeimgbpjlh [2021-06-01] CHR Profile: C:\Users\Mr_GT\AppData\Local\Google\Chrome\User Data\System Profile [2021-06-02] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2257016 2017-08-23] (Adobe Systems Incorporated -> Adobe Systems, Incorporated) R2 ASGT; C:\Windows\SysWOW64\ASGT.exe [55296 2012-01-17] () [Fichier non signé] R2 bdredline; C:\Program Files\Bitdefender Antivirus Free\bdredline.exe [2461792 2021-04-07] (Bitdefender SRL -> Bitdefender) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8894752 2021-01-29] (BattlEye Innovations e.K. -> ) R3 Disc Soft Lite Bus Service; D:\Logiciels\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [5026104 2021-01-13] (AVB Disc Soft, SIA -> Disc Soft Ltd) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [777856 2018-06-29] (EasyAntiCheat Oy -> EasyAntiCheat Ltd) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [288360 2021-05-13] (HP Inc. -> HP Inc.) R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [190784 2019-12-27] (Huawei Technologies Co., Ltd. -> ) [Fichier non signé] S3 MBAMService; D:\Logiciels\Anti-Malware\MBAMService.exe [7456464 2020-12-11] (Malwarebytes Inc -> Malwarebytes) S3 Origin Client Service; D:\Jeux\Origin\OriginClientService.exe [2475312 2020-01-15] (Electronic Arts, Inc. -> Electronic Arts) R2 Origin Web Helper Service; D:\Jeux\Origin\OriginWebHelperService.exe [3393848 2020-01-15] (Electronic Arts, Inc. -> Electronic Arts) R2 ProductAgentService; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [1358248 2021-01-29] (Bitdefender SRL -> Bitdefender) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5393288 2021-05-14] (Microsoft Windows Publisher -> Microsoft Corporation) R2 serposcope; C:\Program Files (x86)\serposcope\bin\serposcope-service.exe [87880 2016-01-07] (Open Source Developer, Pierre Noguès -> Apache Software Foundation) R2 TeamViewer; D:\Logiciels\TeamViewer\TeamViewer_Service.exe [13172752 2020-01-22] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) S3 ucldr_battlegrounds_gl; C:\Program Files\Common Files\UNCHEATER\ucldr_battlegrounds_gl.exe [6973168 2021-04-29] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.) R2 updatesrv; C:\Program Files\Bitdefender Antivirus Free\updatesrv.exe [236128 2021-04-07] (Bitdefender SRL -> Bitdefender) R2 vsserv; C:\Program Files\Bitdefender Antivirus Free\vsserv.exe [559200 2021-04-07] (Bitdefender SRL -> Bitdefender) R2 vsservppl; C:\Program Files\Bitdefender Antivirus Free\vsservppl.exe [240352 2021-04-07] (Bitdefender SRL -> Bitdefender) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation) S3 zksvc; C:\Program Files\Common Files\PUBG\zksvc.exe [7256720 2021-04-29] (PUBG CORPORATION -> PUBG Corporation) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 amdkmafd; C:\WINDOWS\System32\drivers\amdkmafd.sys [66888 2017-10-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35560 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2014-09-09] (ASUSTeK Computer Inc. -> ) R1 atc; C:\WINDOWS\System32\DRIVERS\atc.sys [2718744 2021-02-18] (Bitdefender SRL -> Bitdefender S.R.L. Bucharest, ROMANIA) R2 BdDci; C:\WINDOWS\system32\DRIVERS\bddci.sys [802976 2020-12-08] (Bitdefender SRL -> Bitdefender) S0 bdelam; C:\WINDOWS\System32\drivers\bdelam.sys [22976 2021-04-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Bitdefender) R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2017-12-14] (Disc Soft Ltd -> Disc Soft Ltd) R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2017-12-14] (Disc Soft Ltd -> Disc Soft Ltd) S3 edrsensor; C:\WINDOWS\System32\DRIVERS\edrsensor.sys [309120 2020-02-24] (Bitdefender SRL -> BitDefender S.R.L. Bucharest, ROMANIA) R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [153312 2020-12-11] (Malwarebytes Corporation -> Malwarebytes) R1 Gemma; C:\WINDOWS\System32\DRIVERS\gemma.sys [488592 2021-02-18] (Bitdefender SRL -> BitDefender S.R.L. Bucharest, ROMANIA) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [220160 2020-12-13] (Malwarebytes Inc -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [19912 2020-12-11] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) S3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [197792 2020-12-13] (Malwarebytes Inc -> Malwarebytes) S3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [77496 2020-12-13] (Malwarebytes Inc -> Malwarebytes) R0 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248968 2020-12-11] (Malwarebytes Inc -> Malwarebytes) S3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [139424 2020-12-13] (Malwarebytes Inc -> Malwarebytes) R2 npf; C:\Windows\system32\drivers\npf.sys [36600 2017-01-02] (Riverbed Technology, Inc. -> Riverbed Technology, Inc.) R1 RsProxy; C:\Windows\system32\drivers\RsProxy.sys [15976 2017-12-19] (Realtek Semiconductor Corp -> ) R2 trufos; C:\WINDOWS\System32\drivers\trufos.sys [641728 2021-03-10] (Bitdefender SRL -> Bitdefender) R0 vlflt; C:\WINDOWS\System32\DRIVERS\vlflt.sys [386800 2020-12-08] (Bitdefender SRL -> Bitdefender) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation) S3 WsAudio_Device; C:\WINDOWS\system32\drivers\VirtualAudio.sys [48424 2018-01-19] (Wondershare Technology Co.,Ltd -> Wondershare) S3 xhunter1; C:\WINDOWS\xhunter1.sys [2729456 2021-05-17] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-06-02 21:08 - 2021-06-02 21:10 - 000038234 _____ C:\Users\Mr_GT\Desktop\FRST.txt 2021-06-02 21:07 - 2021-06-02 21:07 - 002300416 _____ (Farbar) C:\Users\Mr_GT\Desktop\FRST64.exe 2021-06-02 21:07 - 2021-06-02 21:07 - 000000000 ____D C:\Users\Mr_GT\Desktop\FRST-OlderVersion 2021-06-02 20:19 - 2021-06-02 20:19 - 000554492 _____ C:\Users\Mr_GT\Desktop\ZHPDiag.txt 2021-06-02 19:40 - 2021-06-02 19:45 - 000000000 ____D C:\Users\Mr_GT\Desktop\Augmenter Vitesse Trottinette Electrique 2021-06-02 16:43 - 2021-06-02 16:43 - 001565527 _____ C:\Users\Mr_GT\Downloads\découvrez le meilleur (2).mp4 2021-06-02 16:38 - 2021-06-02 16:38 - 001564603 _____ C:\Users\Mr_GT\Downloads\découvrez le meilleur (1).mp4 2021-06-02 16:29 - 2021-06-02 16:29 - 001894209 _____ C:\Users\Mr_GT\Downloads\découvrez le meilleur.mp4 2021-06-02 15:43 - 2021-06-02 15:43 - 000305968 _____ C:\Users\Mr_GT\Downloads\socialpack.zip 2021-06-02 14:40 - 2021-06-02 14:40 - 000000165 ____H C:\Users\Mr_GT\Desktop\~$DOSTL-Planning-2021.xlsx 2021-06-02 10:46 - 2021-06-02 10:46 - 000401302 _____ C:\Users\Mr_GT\Downloads\Flyer retailers .pdf 2021-06-01 22:21 - 2021-06-01 22:21 - 000003112 _____ C:\WINDOWS\system32\Tasks\AMDLinkUpdate 2021-06-01 22:21 - 2021-06-01 22:21 - 000000000 ____D C:\Users\Mr_GT\AppData\LocalLow\AMD 2021-06-01 22:19 - 2021-06-01 22:19 - 000126976 _____ C:\Users\Mr_GT\Desktop\ZHPCleaner (R).txt 2021-06-01 22:13 - 2021-06-01 22:13 - 000126282 _____ C:\Users\Mr_GT\Desktop\ZHPCleaner (S).txt 2021-06-01 18:49 - 2021-06-01 18:49 - 000000162 ____H C:\Users\Mr_GT\Downloads\~$anter-ton-ecommerce.pdf 2021-06-01 18:43 - 2021-06-01 18:43 - 006045479 _____ C:\Users\Mr_GT\Downloads\le meilleur moyen de se déplacer en ville.pdf 2021-06-01 18:11 - 2021-06-01 18:11 - 002201595 _____ C:\Users\Mr_GT\Downloads\planter-ton-ecommerce.pdf 2021-06-01 09:48 - 2021-06-01 09:48 - 003255448 _____ (Nicolas Coolman) C:\Users\Mr_GT\Desktop\ZHPCleaner.exe 2021-06-01 09:43 - 2021-06-01 09:43 - 000486715 _____ C:\Users\Mr_GT\Desktop\Arrêt de travail 02.06.2021.pdf 2021-06-01 00:15 - 2021-06-01 22:21 - 000000666 _____ C:\WINDOWS\Tasks\G2MUploadTask-S-1-5-21-3351771493-749409139-3151566472-1001.job 2021-06-01 00:15 - 2021-06-01 22:21 - 000000570 _____ C:\WINDOWS\Tasks\G2MUpdateTask-S-1-5-21-3351771493-749409139-3151566472-1001.job 2021-05-31 19:02 - 2021-05-31 19:02 - 000194884 _____ C:\Users\Mr_GT\Downloads\contrat_numero_463 (1).pdf 2021-05-31 13:57 - 2021-05-31 14:03 - 000000068 _____ C:\Users\Mr_GT\Desktop\Dépenses Fin de Mois.txt 2021-05-31 12:03 - 2021-06-02 21:10 - 000000000 ____D C:\FRST 2021-05-31 11:46 - 2021-06-02 20:07 - 000000865 _____ C:\Users\Mr_GT\Desktop\ZHPSuite.lnk 2021-05-31 11:46 - 2021-06-01 09:49 - 000000000 ____D C:\Users\Mr_GT\AppData\Local\ZHP 2021-05-31 11:45 - 2021-05-31 11:46 - 003469464 _____ (Nicolas Coolman) C:\Users\Mr_GT\Downloads\ZHPSuite.exe 2021-05-31 11:17 - 2021-05-31 11:17 - 000023214 _____ C:\Users\Mr_GT\Downloads\S00842.pdf 2021-05-31 11:04 - 2021-05-31 11:04 - 000969690 _____ C:\Users\Mr_GT\Downloads\UAE - Societe-Dubai FR - IFZA (AED).pdf 2021-05-30 18:50 - 2021-05-30 18:50 - 000040497 _____ C:\Users\Mr_GT\Downloads\vosTimbres (22).pdf 2021-05-30 18:33 - 2021-05-30 18:33 - 000104773 _____ C:\Users\Mr_GT\Downloads\Bordereaux-affranchissement (54).pdf 2021-05-30 17:40 - 2021-05-30 17:40 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP 2021-05-30 17:40 - 2021-05-30 17:40 - 000000000 ____D C:\Program Files\HPPrintScanDoctor 2021-05-29 21:12 - 2021-05-29 21:12 - 000090748 _____ C:\Users\Mr_GT\Downloads\2021-02-04-attestation-de-deplacement-depuis-la-france-metropolitaine-vers-un-pays-exterieur-a-l-espace-europeen.pdf 2021-05-29 18:59 - 2021-05-29 18:59 - 000003378 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3351771493-749409139-3151566472-1001 2021-05-29 18:59 - 2021-05-29 18:59 - 000002401 _____ C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-05-23 10:11 - 2021-05-23 10:11 - 000001183 _____ C:\Users\Mr_GT\Downloads\Nouveau document texte.txt 2021-05-23 10:06 - 2021-05-23 10:06 - 000000000 ____D C:\Users\Mr_GT\Documents\Zoom 2021-05-23 10:06 - 2021-05-23 10:06 - 000000000 ____D C:\Users\Mr_GT\AppData\Roaming\Zoom 2021-05-23 10:06 - 2021-05-23 10:06 - 000000000 ____D C:\Users\Mr_GT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom 2021-05-21 20:24 - 2021-05-21 20:24 - 000036870 _____ C:\Users\Mr_GT\Downloads\vosTimbres (21).pdf 2021-05-20 21:30 - 2021-05-20 21:30 - 000000224 _____ C:\Users\Mr_GT\Downloads\Hafny – Miroir lentille en acier inoxydable, VTT, guidon, rétroviseur de sécurité latéral, de route, vélo flexible, cyclisme.txt 2021-05-20 11:43 - 2021-05-20 11:43 - 000036896 _____ C:\Users\Mr_GT\Downloads\vosTimbres (20).pdf 2021-05-20 11:04 - 2021-05-20 11:04 - 000000000 ____D C:\Users\Mr_GT\Desktop\Alexia 2021-05-19 15:22 - 2021-05-19 15:22 - 000048188 _____ C:\Users\Mr_GT\Downloads\Facture N°452 - FRONERI France.pdf 2021-05-19 11:32 - 2021-05-19 11:32 - 000146556 _____ C:\Users\Mr_GT\Downloads\Grille Tarifaire Trott's 2021 trot secur.pdf 2021-05-18 17:47 - 2021-05-18 17:47 - 000197860 _____ C:\Users\Mr_GT\Downloads\customers_export_1 (2).csv 2021-05-18 11:35 - 2021-05-18 11:35 - 000051001 _____ C:\Users\Mr_GT\Downloads\Facture N°160 - FREEMOOV (2).pdf 2021-05-18 11:16 - 2021-05-18 11:16 - 000592154 _____ C:\Users\Mr_GT\Downloads\Devis N°162 - BAUDOUIN RENAN (1).pdf 2021-05-18 11:11 - 2021-05-19 15:22 - 000000000 ____D C:\Users\Mr_GT\Desktop\Devis - Facture Trot'Secure 2021-05-18 11:10 - 2021-05-18 11:10 - 000048960 _____ C:\Users\Mr_GT\Downloads\Devis N°162 - BAUDOUIN RENAN.pdf 2021-05-17 18:18 - 2021-05-17 18:18 - 000050754 _____ C:\Users\Mr_GT\Downloads\Facture N°160 - FREEMOOV (1).pdf 2021-05-17 18:17 - 2021-05-17 18:17 - 000050735 _____ C:\Users\Mr_GT\Downloads\Facture N°160 - FREEMOOV.pdf 2021-05-17 18:16 - 2021-05-17 18:16 - 000050735 _____ C:\Users\Mr_GT\Downloads\Facture N°159 - FREEMOOV (1).pdf 2021-05-17 11:33 - 2021-05-17 11:33 - 000049780 _____ C:\Users\Mr_GT\Downloads\Facture N°159 - FREEMOOV.pdf 2021-05-14 19:01 - 2021-05-14 19:02 - 000115462 _____ C:\Users\Mr_GT\Downloads\trottinette-electrique-wispeed-t850.jpg&f=3000x3000 2021-05-14 17:43 - 2021-05-14 17:43 - 000000206 _____ C:\Users\Mr_GT\Downloads\Klaxon de vélo électronique étanche, anneau de guidon, sonnette forte, 4 Modes, accessoires de vélo.txt 2021-05-14 16:53 - 2021-05-14 16:53 - 000000000 ____D C:\Users\Mr_GT\Downloads\CoolChange – lampe de vélo Rechargeable par USB, éclairage de bicyclette, 2000 2021-05-14 16:43 - 2021-05-14 16:43 - 001503719 _____ C:\Users\Mr_GT\Downloads\IMG_0213.HEIC 2021-05-14 16:30 - 2021-05-14 16:30 - 000000226 _____ C:\Users\Mr_GT\Downloads\INBIKE Plein Doigt Écran Tactile Vélo Gants VTT Vélo Vélo Gants GEL Rembourré En Plein Air Sport Fitness Gants Vélo Accessoires.txt 2021-05-14 10:57 - 2021-05-14 11:07 - 000000000 ____D C:\Users\Mr_GT\Desktop\Poignée Trottinette Bionic 2021-05-14 10:29 - 2021-05-14 10:38 - 000000000 ____D C:\Users\Mr_GT\Desktop\Poignée Trottinette Fuzion 2021-05-14 10:07 - 2021-05-14 10:16 - 000000000 ____D C:\Users\Mr_GT\Desktop\Poignée Trottinette Moderna Grip 2021-05-14 09:40 - 2021-05-14 09:46 - 000384769 _____ C:\Users\Mr_GT\Desktop\contrat_numero_463.pdf 2021-05-14 09:40 - 2021-05-14 09:40 - 000194884 _____ C:\Users\Mr_GT\Downloads\contrat_numero_463.pdf 2021-05-14 00:23 - 2021-05-14 00:23 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2021-05-14 00:23 - 2021-05-14 00:23 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2021-05-14 00:23 - 2021-05-14 00:23 - 001823816 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2021-05-14 00:23 - 2021-05-14 00:23 - 001687040 _____ C:\WINDOWS\system32\libcrypto.dll 2021-05-14 00:23 - 2021-05-14 00:23 - 001393504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2021-05-14 00:23 - 2021-05-14 00:23 - 001314120 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2021-05-14 00:23 - 2021-05-14 00:23 - 001163776 _____ C:\WINDOWS\system32\MBR2GPT.EXE 2021-05-14 00:23 - 2021-05-14 00:23 - 000700928 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll 2021-05-14 00:23 - 2021-05-14 00:23 - 000157184 _____ C:\WINDOWS\system32\uwfcsp.dll 2021-05-14 00:23 - 2021-05-14 00:23 - 000153600 _____ C:\WINDOWS\system32\uwfcfgmgmt.dll 2021-05-14 00:23 - 2021-05-14 00:23 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe 2021-05-14 00:23 - 2021-05-14 00:23 - 000014848 _____ C:\WINDOWS\system32\hnsproxy.dll 2021-05-14 00:23 - 2021-05-14 00:23 - 000011351 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2021-05-14 00:22 - 2021-05-14 00:22 - 000165888 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe 2021-05-14 00:22 - 2021-05-14 00:22 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe 2021-05-13 16:32 - 2021-05-13 16:38 - 000000000 ____D C:\Users\Mr_GT\Desktop\Poignée Trottinette Thermoplastic 2021-05-13 16:09 - 2021-05-13 16:20 - 000000000 ____D C:\Users\Mr_GT\Desktop\Poignée Trottinette Tentation Grip 2021-05-13 15:48 - 2021-05-13 15:53 - 000000000 ____D C:\Users\Mr_GT\Desktop\Poignée Trottinette Confort Grip 2021-05-13 12:47 - 2021-05-13 14:23 - 233698803 _____ C:\Users\Mr_GT\Desktop\Entretien avec Benjamin Gomes.mkv 2021-05-12 23:53 - 2021-05-12 23:53 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2021-05-12 18:06 - 2021-05-12 18:06 - 008215461 _____ C:\Users\Mr_GT\Downloads\Lineup Mobilité Urbaine - GR 2021 (1).pdf 2021-05-12 18:06 - 2021-05-12 18:06 - 000147188 _____ C:\Users\Mr_GT\Downloads\Copie de Pricelist GR - Q2 2021 (1).xlsx 2021-05-12 12:50 - 2021-05-12 12:50 - 000545238 _____ C:\Users\Mr_GT\Desktop\feuille de soin.pdf 2021-05-12 12:40 - 2021-05-12 12:40 - 002019371 _____ C:\Users\Mr_GT\Desktop\Arrêt de travail 11.05.2021.pdf 2021-05-12 11:32 - 2021-05-12 11:32 - 000033465 _____ C:\Users\Mr_GT\Downloads\vosTimbres (19).pdf 2021-05-12 10:55 - 2021-05-12 10:55 - 000002144 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2021-05-04 11:07 - 2021-05-04 11:07 - 000106451 _____ C:\Users\Mr_GT\Downloads\Bordereaux-affranchissement (53).pdf 2021-05-03 13:23 - 2021-05-03 13:23 - 000038371 _____ C:\Users\Mr_GT\Downloads\MB4649951_14625207.pdf 2021-05-03 11:52 - 2021-05-03 18:09 - 000000923 _____ C:\Users\Mr_GT\Desktop\Freemoov.txt 2021-05-03 11:30 - 2021-05-03 11:30 - 000039185 _____ C:\Users\Mr_GT\Downloads\vosTimbres (18).pdf ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-06-02 21:10 - 2019-03-12 02:10 - 000000000 ____D C:\Program Files\Bitdefender Antivirus Free 2021-06-02 21:08 - 2021-04-05 15:29 - 000000000 ____D C:\Users\Mr_GT\AppData\Roaming\WhatsApp 2021-06-02 21:05 - 2020-11-01 14:09 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2021-06-02 21:05 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-06-02 20:25 - 2019-12-07 11:03 - 000065536 _____ C:\WINDOWS\system32\config\ELAM 2021-06-02 20:24 - 2018-01-07 00:50 - 000000000 ____D C:\Users\Mr_GT\AppData\Roaming\discord 2021-06-02 20:24 - 2018-01-07 00:50 - 000000000 ____D C:\Users\Mr_GT\AppData\Local\Discord 2021-06-02 20:19 - 2019-05-12 15:54 - 000000000 ____D C:\Users\Mr_GT\AppData\Roaming\ZHP 2021-06-02 18:30 - 2018-07-06 08:55 - 000000000 ____D C:\Users\Mr_GT\AppData\Local\D3DSCache 2021-06-02 16:43 - 2017-12-17 22:53 - 000000000 ____D C:\Users\Mr_GT\AppData\Roaming\vlc 2021-06-02 15:10 - 2020-11-01 14:16 - 000004176 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{A16C129F-8F0E-47B4-A61D-784367458F40} 2021-06-02 14:52 - 2019-07-20 12:54 - 000000000 ____D C:\ProgramData\Mozilla 2021-06-02 14:52 - 2018-05-18 02:33 - 000000000 ____D C:\Users\Mr_GT\AppData\LocalLow\Mozilla 2021-06-01 22:27 - 2020-11-01 14:18 - 001771910 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2021-06-01 22:27 - 2019-12-07 16:50 - 000792000 _____ C:\WINDOWS\system32\perfh00C.dat 2021-06-01 22:27 - 2019-12-07 16:50 - 000150166 _____ C:\WINDOWS\system32\perfc00C.dat 2021-06-01 22:27 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF 2021-06-01 22:24 - 2017-12-14 17:22 - 000000000 ___RD C:\Users\Mr_GT\OneDrive 2021-06-01 22:23 - 2018-01-16 01:55 - 000000448 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics 2021-06-01 22:21 - 2020-11-01 14:16 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2021-06-01 22:21 - 2020-05-21 13:03 - 000000000 ____D C:\ProgramData\serposcope 2021-06-01 22:21 - 2017-12-14 17:56 - 000000000 ____D C:\Users\Mr_GT\AppData\Local\CrashDumps 2021-06-01 22:20 - 2021-01-13 02:52 - 000008192 ___SH C:\DumpStack.log.tmp 2021-06-01 22:20 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2021-06-01 18:17 - 2018-01-16 01:50 - 000000000 ____D C:\Users\Mr_GT\AppData\Local\Packages 2021-06-01 18:16 - 2020-11-11 21:00 - 000000000 ____D C:\Users\Mr_GT\AppData\LocalLow\Temp 2021-06-01 16:25 - 2020-01-01 17:11 - 000001596 _____ C:\Users\Mr_GT\Desktop\Note-Drop.txt 2021-06-01 00:15 - 2020-11-01 14:16 - 000003834 _____ C:\WINDOWS\system32\Tasks\G2MUploadTask-S-1-5-21-3351771493-749409139-3151566472-1001 2021-06-01 00:15 - 2020-11-01 14:16 - 000003738 _____ C:\WINDOWS\system32\Tasks\G2MUpdateTask-S-1-5-21-3351771493-749409139-3151566472-1001 2021-06-01 00:15 - 2020-03-24 19:56 - 000000000 ____D C:\Users\Mr_GT\AppData\Local\GoToMeeting 2021-05-31 20:27 - 2020-11-01 14:10 - 000000000 ____D C:\Users\Mr_GT 2021-05-31 15:23 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2021-05-30 18:55 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2021-05-30 10:00 - 2019-07-23 10:48 - 000000000 ____D C:\Users\Mr_GT\AppData\Roaming\uTorrent 2021-05-29 18:59 - 2020-12-07 21:04 - 000002227 _____ C:\Users\Mr_GT\Desktop\Discord.lnk 2021-05-29 18:59 - 2020-07-12 10:51 - 000002444 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-05-29 18:59 - 2020-07-12 10:51 - 000002282 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2021-05-29 18:59 - 2019-03-30 19:34 - 000000000 ____D C:\Users\Mr_GT\AppData\Local\BitTorrentHelper 2021-05-20 10:32 - 2019-06-22 19:04 - 000000000 ____D C:\Users\Mr_GT\Desktop\A-Trot'Secure dropshipping 2021-05-20 03:21 - 2021-04-05 18:04 - 000000000 ____D C:\Users\Mr_GT\AppData\Local\WhatsApp 2021-05-17 20:56 - 2021-01-29 21:55 - 000000000 ____D C:\Program Files\Common Files\PUBG 2021-05-17 20:44 - 2021-01-29 21:55 - 002729456 _____ (Wellbia.com Co., Ltd.) C:\WINDOWS\xhunter1.sys 2021-05-16 16:07 - 2021-02-11 21:11 - 000000000 ____D C:\Users\Mr_GT\Desktop\Pub Facebook 2021-05-14 21:00 - 2020-11-07 15:37 - 000000000 ____D C:\Users\Mr_GT\Desktop\Finances 2021-05-14 14:13 - 2021-01-01 05:41 - 000096799 _____ C:\Users\Mr_GT\Desktop\DOSTL-Planning-2021.xlsx 2021-05-14 11:10 - 2021-03-30 19:36 - 000002668 _____ C:\Users\Mr_GT\Desktop\Produits.txt 2021-05-14 00:55 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2021-05-14 00:53 - 2020-11-01 14:09 - 000549392 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2021-05-14 00:53 - 2020-11-01 13:58 - 000000000 ____D C:\Program Files\Hyper-V 2021-05-14 00:53 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2021-05-14 00:53 - 2019-12-07 16:51 - 000000000 ____D C:\WINDOWS\system32\OpenSSH 2021-05-14 00:53 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\PrintDialog 2021-05-14 00:53 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2021-05-14 00:53 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2021-05-14 00:53 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2021-05-14 00:53 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2021-05-14 00:53 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2021-05-14 00:53 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources 2021-05-14 00:53 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2021-05-14 00:53 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2021-05-14 00:53 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup 2021-05-14 00:53 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2021-05-14 00:53 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2021-05-14 00:53 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2021-05-14 00:53 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning 2021-05-14 00:53 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2021-05-14 00:53 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\DiagTrack 2021-05-14 00:53 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2021-05-14 00:25 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2021-05-14 00:16 - 2017-12-14 20:55 - 000000000 ____D C:\WINDOWS\system32\MRT 2021-05-14 00:14 - 2017-12-14 20:55 - 132732536 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2021-05-13 19:11 - 2018-03-28 19:04 - 000000000 ____D C:\Users\Mr_GT\AppData\Roaming\obs-studio 2021-05-13 10:53 - 2018-05-18 02:31 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2021-05-13 10:53 - 2017-12-14 17:18 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox 2021-05-12 23:53 - 2018-05-18 02:31 - 000001228 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2021-05-12 11:51 - 2021-04-26 14:18 - 000000000 ____D C:\Users\Mr_GT\AppData\Roaming\LLXzbVjNucwmQRgM 2021-05-12 11:05 - 2018-08-28 00:06 - 000000000 ____D C:\Users\Mr_GT\AppData\Local\ElevatedDiagnostics ==================== Fichiers à la racine de certains dossiers ======== 2018-03-04 03:28 - 2018-03-04 03:28 - 000003384 _____ () C:\Users\Mr_GT\AppData\Roaming\Microsoft\83b968be-efe4-4a91-894a-ec489147e1aa 2019-09-01 21:51 - 2019-11-19 02:16 - 000001456 _____ () C:\Users\Mr_GT\AppData\Local\Adobe Enregistrer pour le Web 13.0 Prefs 2019-03-05 14:23 - 2019-03-05 14:23 - 000000000 _____ () C:\Users\Mr_GT\AppData\Local\{3DF96896-912A-4CDC-9DF4-4BE9A8A28414} ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================