Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 06-06-2021 Exécuté par conta (administrateur) sur SALON (LENOVO 81MV) (06-06-2021 11:34:11) Exécuté depuis C:\Users\conta\Desktop Profils chargés: conta Platform: Windows 10 Home Version 20H2 19042.985 (X64) Langue: Français (France) Navigateur par défaut: FF Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated) C:\Program Files\WindowsApps\ReaderNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (bizmodeller Ltd -> bizmodeller Ltd) C:\Program Files\MyMediaForAlexa\MyMediaForAlexa.exe (Dolby Laboratories, Inc. -> ) C:\Windows\System32\dolbyaposvc\DAX3API.exe <2> (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.82\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.82\GoogleCrashHandler64.exe (Huawei Technologies Co., Ltd. -> ) C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_7ecc5be6ca7b3b0d\esif_uf.exe (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_0b214be229a13e84\jhi_service.exe (Intel(R) pGFX -> ) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_12bdb8127c4c0458\OneApp.IGCC.WinService.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_d2a0453c62b3b51a\igfxCUIService.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_d2a0453c62b3b51a\igfxEM.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_48d2cae4a577c591\IntelCpHDCPSvc.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_48d2cae4a577c591\IntelCpHeciSvc.exe (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iaahcic.inf_amd64_120314e52c04567c\RstMwService.exe (Lenovo (Beijing) Limited -> Lenovo Group Limited) C:\Users\conta\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSB.exe (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\3.7.19.0\LenovoVantageService.exe (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost86\Lenovo.Modern.ImController.PluginHost.Device.exe (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\MSBuild.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12104.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMService64.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.4-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.4-0\NisSrv.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <7> (Nicolas Coolman -> Nicolas Coolman) [Fichier non signé] C:\Users\conta\Desktop\ZHPSuite.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RPB.EXE (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) C:\ProgramData\EPSON\EPW!3 SSRP\E_S40STB.EXE (Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnh.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnhService.exe (Thomas Ascher) [Fichier non signé] D:\Logiciel\atnotes\ATnotes.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [1076728 2020-03-24] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM-x32\...\Run: [KeyScrambler] => C:\Program Files (x86)\KeyScrambler\keyscrambler.exe [516240 2020-02-18] (QFX Software Corporation -> QFX Software Corporation) HKLM-x32\...\Run: [ProductUpdater] => C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe [186592 2021-04-02] (Mixbyte Inc -> ) HKU\S-1-5-21-1500095853-800338277-2208543213-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [33770112 2021-05-20] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-1500095853-800338277-2208543213-1001\...\Run: [Adobe Reader Synchronizer] => C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe [5536440 2021-04-27] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-21-1500095853-800338277-2208543213-1001\...\Run: [Amazon Music Helper] => C:\Users\conta\AppData\Local\Amazon Music\Amazon Music Helper.exe [2385336 2019-02-20] (Amazon Services LLC -> Amazon Services LLC) HKU\S-1-5-21-1500095853-800338277-2208543213-1001\...\Run: [Amazon Music] => C:\Users\conta\AppData\Local\Amazon Music\Amazon Music.exe [19218360 2019-02-20] (Amazon Services LLC -> Amazon Services LLC) HKU\S-1-5-21-1500095853-800338277-2208543213-1001\...\Policies\Explorer: [NoSecurityTab] 1 HKU\S-1-5-21-1500095853-800338277-2208543213-1001\...\MountPoints2: {dcc1c5b2-8b12-11eb-9d15-3cf011327b1a} - "E:\HiSuiteDownLoader.exe" HKU\S-1-5-21-1500095853-800338277-2208543213-1001\...\MountPoints2: {edbe0ecf-9d2f-11eb-9d18-3cf011327b1a} - "E:\HiSuiteDownLoader.exe" HKLM\...\Print\Monitors\EPSON SX410 Series 64MonitorBE: C:\WINDOWS\system32\E_ILMFCE.DLL [108032 2008-08-08] (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) HKLM\...\Print\Monitors\pdfcmon: C:\WINDOWS\system32\pdfcmon.dll [116736 2020-09-25] (pdfforge GmbH) [Fichier non signé] HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\91.0.4472.77\Installer\chrmstp.exe [2021-06-02] (Google LLC -> Google LLC) Startup: C:\Users\conta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2021-04-23] ShortcutTarget: MEGAsync.lnk -> C:\Users\conta\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited -> Mega Limited) Startup: C:\Users\conta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Run.bat [2021-06-03] () [Fichier non signé] Startup: C:\Users\conta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sidebar542.lnk [2021-06-06] ShortcutTarget: Sidebar542.lnk -> C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation) [Fichier non signé] Startup: C:\Users\conta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SystemLogin32Bits559633.vbs [2021-06-03] () [Fichier non signé] Startup: C:\Users\conta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SystemLogin32Bits897sa789cvcvb.vbs [2021-06-03] () [Fichier non signé] Startup: C:\Users\conta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\WindowsSystemUpdate.js [2021-04-27] () [Fichier non signé] ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {0379BCF3-4C11-4A3E-B961-F6F942977FB5} - System32\Tasks\Lenovo\Lenovo Service Bridge\S-1-5-21-1500095853-800338277-2208543213-1001 => C:\Users\conta\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSBUpdater.exe [87384 2021-05-17] (Lenovo (Beijing) Limited -> Lenovo Group Limited) Task: {10A828A5-E01A-4E3F-A01A-F2E58D9942D9} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\9cddd063-9455-409e-b365-a2c1cde543e0 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81824 2021-03-14] (Lenovo -> Lenovo Group Ltd.) Task: {1FEBC6A9-9D8A-4359-8272-8FDEAA033C86} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\fc167e45-ee77-4725-b54f-4e46440ef8ed => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81824 2021-03-14] (Lenovo -> Lenovo Group Ltd.) Task: {2447AF6B-E558-4102-A5F2-3BF4D208363E} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [28158080 2021-05-20] (Piriform Software Ltd -> Piriform Software Ltd) Task: {29ADD5D1-C138-4086-B0D5-A7C55024A4EC} - System32\Tasks\MEGA\MEGAsync Update Task S-1-5-21-1500095853-800338277-2208543213-1001 => C:\Users\conta\AppData\Local\MEGAsync\MEGAupdater.exe [1818360 2021-01-28] (Mega Limited -> Mega Limited) Task: {55EB9AFF-D4B1-4BAB-A0A6-517008202016} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => %windir%\System32\reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32 Task: {5685425D-282F-457B-86F4-07DB05D8B0F9} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => "%windir%\system32\sc.exe" START ImControllerService Task: {64AC674E-C2FC-4B22-A545-48C985347784} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.4-0\MpCmdRun.exe [644888 2021-06-05] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {6D4B7DA8-3187-4DB2-8DB7-D778DF64B376} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.) Task: {6D92FB69-753B-494B-B7EB-413B62B9577B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.4-0\MpCmdRun.exe [644888 2021-06-05] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {74726AF2-1AD8-4F50-91A4-6A8267281B7F} - System32\Tasks\Lenovo\Vantage\Schedule\VantageTelemetryAddinTask => C:\Program Files (x86)\Lenovo\VantageService\3.6.15.0\ScheduleEventAction.exe Task: {84764F3E-DF35-47E5-B255-447BB428F0D6} - System32\Tasks\TrackerAutoUpdate => D:\Logiciel\pdfxchange viewer\Tracker Software\Update\TrackerUpdate.exe [4475136 2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) Task: {8FF73DD4-A423-4482-96F0-E17E8DAAA4F9} - System32\Tasks\2BrightSparks\SyncBackFree\SALON-conta\SyncBackFree ASUS Martine 2 => D:\Logiciel\syncback\SyncBackFree\SyncBackFree.exe Task: {91A93222-6D45-452D-BCEA-E63502632079} - System32\Tasks\Lenovo\Vantage\Schedule\DailyTelemetryTransmission => C:\Program Files (x86)\Lenovo\VantageService\3.7.19.0\ScheduleEventAction.exe [23968 2021-05-17] (Lenovo -> Lenovo Group Ltd.) Task: {949A15D1-8D21-4D12-A688-A4A35E63C149} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154456 2021-04-23] (Google LLC -> Google LLC) Task: {980FD14F-D3F5-4232-89C1-604A36D675A3} - System32\Tasks\2BrightSparks\SyncBackFree\SALON-conta\SyncBackFree ASUS Agath => D:\Logiciel\syncback\SyncBackFree\SyncBackFree.exe Task: {9A4B1EE3-103D-41EE-A28A-B5CF139D9564} - System32\Tasks\2BrightSparks\SyncBackFree\SALON-conta\SyncBackFree ASUS bureau 2 => D:\Logiciel\syncback\SyncBackFree\SyncBackFree.exe Task: {9C294B10-0476-4292-8842-8694DBC10744} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\WINDOWS\system32\ImController.InfInstaller.exe [62392 2021-03-14] (Lenovo -> Lenovo Group Ltd.) Task: {9E090ACC-CF2C-4853-A91A-1FD42AD46B87} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.4-0\MpCmdRun.exe [644888 2021-06-05] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {A4BFB6AD-48AA-4FBC-9068-F66176CA1C39} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.4-0\MpCmdRun.exe [644888 2021-06-05] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {A6B91A9C-BB9D-4328-8E27-95A19232408B} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\6cce02fd-7d32-465b-b68d-3b2189e57f85 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81824 2021-03-14] (Lenovo -> Lenovo Group Ltd.) Task: {A9485EF7-972E-4D84-993D-091901066CD4} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1500095853-800338277-2208543213-500 => C:\Users\conta\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe Task: {ADD118EE-5A35-4CB5-B4CB-4439AEEE6C43} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2021-05-20] (Piriform Software Ltd -> Piriform) Task: {BD79ADAB-D670-4EDC-9889-BD6E27AAB748} - System32\Tasks\Lenovo\Vantage\Lenovo.Vantage.ServiceMaintainance => %systemroot%\system32\sc.exe start LenovoVantageService Task: {C186801C-2836-4F92-B969-DFA0558DE8EF} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154456 2021-04-23] (Google LLC -> Google LLC) Task: {C95BD548-619C-47C9-83D5-BD31D7CDBA05} - System32\Tasks\Lenovo\BatteryGauge\BatteryGaugeMaintenance => C:\ProgramData\Lenovo\ImController\Plugins\LenovoBatteryGaugePackage\x64\BGHelper.exe [143888 2021-03-02] (Lenovo -> Lenovo Group Ltd.) Task: {D31A8E07-03E7-41B7-BF17-A589FE130B9F} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\f55d4e75-57e7-45a4-813f-db91c86a8936 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81824 2021-03-14] (Lenovo -> Lenovo Group Ltd.) Task: {D8516917-445D-4D74-ABC3-A3CB5AE9B55D} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [690616 2021-06-02] (Mozilla Corporation -> Mozilla Foundation) Task: {EB3D3F56-9B4F-439E-8BD3-201443DA6490} - System32\Tasks\McAfee\DAD.Execute.Updates => C:\Program Files\Common Files\McAfee\DynamicAppDownloader\1.4.134\DADUpdater.exe Task: {EE6B8984-1859-4B32-8C45-BB93A455CA2A} - System32\Tasks\LenovoUtility Startup => C:\Windows\explorer.exe lenovo-utility:// Task: {FA0F3627-797D-4EB7-8E18-439BF48E60FE} - System32\Tasks\2BrightSparks\SyncBackFree\SALON-conta\SyncBackFree jean marie ASUS => D:\Logiciel\syncback\SyncBackFree\SyncBackFree.exe (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\TrackerAutoUpdate.job => D:\Logiciel\pdfxchange viewer\Tracker Software\Update\TrackerUpdate.exe-CheckUpdate(Tracker Software Products (Canada) Ltd.Kee ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{42d623dd-82c6-4808-aa34-dc43c3efa8e2}: [DhcpNameServer] 192.168.1.1 Edge: ======= Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)] Edge Extension: (Pas de nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [non trouvé(e)] Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)] Edge Extension: (Pas de nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [non trouvé(e)] Edge Profile: C:\Users\conta\AppData\Local\Microsoft\Edge\User Data\Default [2021-06-06] FireFox: ======== FF DefaultProfile: fxpphoua.default FF DefaultProfile: 4b900hxw.default FF ProfilePath: C:\Users\conta\AppData\Roaming\Mozilla\Firefox\Profiles\fxpphoua.default [2020-12-20] FF Homepage: Mozilla\Firefox\Profiles\fxpphoua.default -> hxxps://www.google.com/ FF NewTab: Mozilla\Firefox\Profiles\fxpphoua.default -> hxxps://mysearchengine.co/homepage?hp=1&bitmask=9996&pId=KL150601&iDate=2020-12-20 07:28:06&bName= FF SearchPlugin: C:\Users\conta\AppData\Roaming\Mozilla\Firefox\Profiles\fxpphoua.default\searchplugins\My Bing Search.xml [2020-11-22] FF ProfilePath: C:\Users\conta\AppData\Roaming\Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665 [2021-06-06] FF DownloadDir: D:\Telechargement FF Homepage: Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665 -> hxxps://www.symbaloo.com/home/mix/13eP7083bb FF Notifications: Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665 -> hxxps://www.lunion.fr FF HomepageOverride: Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665 -> Enabled: {c0674718-842b-4d4c-83f2-0627b7098f12} FF NewTabOverride: Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665 -> Enabled: {c0674718-842b-4d4c-83f2-0627b7098f12} FF NewTabOverride: Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665 -> Enabled: uBlock0@raymondhill.net FF NewTabOverride: Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665 -> Enabled: qwant@search.mozilla.org FF NewTabOverride: Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665 -> Enabled: ebay@search.mozilla.org FF NewTabOverride: Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665 -> Enabled: ddg@search.mozilla.org FF NewTabOverride: Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665 -> Enabled: amazon@search.mozilla.org FF NewTabOverride: Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665 -> Enabled: bing@search.mozilla.org FF NewTabOverride: Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665 -> Enabled: wikipedia@search.mozilla.org FF NewTabOverride: Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665 -> Enabled: google@search.mozilla.org FF Extension: (Facebook Container) - C:\Users\conta\AppData\Roaming\Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665\Extensions\@contain-facebook.xpi [2021-05-07] FF Extension: (Save Page WE) - C:\Users\conta\AppData\Roaming\Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665\Extensions\savepage-we@DW-dev.xpi [2021-05-26] FF Extension: (Google Translator for Firefox) - C:\Users\conta\AppData\Roaming\Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665\Extensions\translator@zoli.bod.xpi [2021-01-12] FF Extension: (uBlock Origin) - C:\Users\conta\AppData\Roaming\Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665\Extensions\uBlock0@raymondhill.net.xpi [2021-05-04] FF Extension: (Flagfox) - C:\Users\conta\AppData\Roaming\Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665\Extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}.xpi [2021-06-02] FF Extension: (Fantasy of Lights - N.Lights Series 1) - C:\Users\conta\AppData\Roaming\Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665\Extensions\{1a176495-2247-4217-b1fc-139fc11c4324}.xpi [2021-01-12] FF Extension: (Bitwarden) - C:\Users\conta\AppData\Roaming\Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665\Extensions\{446900e4-71c2-419f-a6a7-df9c091e268b}.xpi [2021-05-14] FF Extension: (dreamstime death race) - C:\Users\conta\AppData\Roaming\Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665\Extensions\{7356ce0a-450a-4f4d-9538-5ebd1703e396}.xpi [2021-01-12] FF Extension: (rainbow blur) - C:\Users\conta\AppData\Roaming\Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665\Extensions\{7477cece-5973-41fe-a60e-2d2ffae6d21e}.xpi [2021-01-12] FF Extension: (Madjoker of this life) - C:\Users\conta\AppData\Roaming\Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665\Extensions\{886f09cf-2035-40e2-8e71-0a03044f7043}.xpi [2021-01-12] FF Extension: (Just a theme) - C:\Users\conta\AppData\Roaming\Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665\Extensions\{8ec3a412-28c0-4836-8be4-ece0a02401af}.xpi [2021-01-12] FF Extension: (Mozilla: Firefox OS) - C:\Users\conta\AppData\Roaming\Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665\Extensions\{93645565-f282-4c96-a85a-8133740c6273}.xpi [2021-01-12] FF Extension: (Tokisaki Kurumi by Akame Hase) - C:\Users\conta\AppData\Roaming\Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665\Extensions\{98abe1c1-a798-4238-93fb-ec2ba3c80bb8}.xpi [2021-01-12] FF Extension: (Persona 4) - C:\Users\conta\AppData\Roaming\Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665\Extensions\{a7aa8cf5-e9bb-4c03-8282-1377938bec4f}.xpi [2021-01-12] FF Extension: (Persona 5 Theme) - C:\Users\conta\AppData\Roaming\Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665\Extensions\{acaa7837-683e-459b-bd13-7f5a2b896ae1}.xpi [2021-01-12] FF Extension: (Video DownloadHelper) - C:\Users\conta\AppData\Roaming\Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2021-01-12] FF Extension: (Symbaloo Homepage and Search) - C:\Users\conta\AppData\Roaming\Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665\Extensions\{c0674718-842b-4d4c-83f2-0627b7098f12}.xpi [2021-01-12] FF Extension: (multicolor trail) - C:\Users\conta\AppData\Roaming\Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665\Extensions\{c3d0c72d-ffef-4fa9-b169-4d7a5d171504}.xpi [2021-01-12] FF Extension: () - C:\Users\conta\AppData\Roaming\Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665\Extensions\{c8934291-7998-4094-84fa-a352e8bd3aad}.xpi [2021-01-12] FF Extension: (FirefoxClassicalBlue) - C:\Users\conta\AppData\Roaming\Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665\Extensions\{dc4152a2-0127-4e36-aaf9-7a0ab4c46dc0}.xpi [2021-01-12] FF Extension: (Megumin by Akame Hase) - C:\Users\conta\AppData\Roaming\Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665\Extensions\{dc58ddef-16a2-4270-8992-aad08be9de60}.xpi [2021-01-12] FF Extension: (Shimakaze by Akame Hase) - C:\Users\conta\AppData\Roaming\Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665\Extensions\{dc808bc8-9d03-4559-9cde-c535b154d0d1}.xpi [2021-01-12] FF Extension: (Dark Fox) - C:\Users\conta\AppData\Roaming\Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665\Extensions\{e7fe4ffe-f256-4f85-906d-072fdd698585}.xpi [2021-01-12] FF Extension: (LUNA FOX for Red Themes) - C:\Users\conta\AppData\Roaming\Mozilla\Firefox\Profiles\1g2h9y0y.default-release-1610443496665\Extensions\{f70f3915-bbb5-423d-be63-3c4ad9681b09}.xpi [2021-01-12] FF ProfilePath: C:\Users\conta\AppData\Roaming\Moonchild Productions\Pale Moon\Profiles\4b900hxw.default [2021-06-03] FF Homepage: Moonchild Productions\Pale Moon\Profiles\4b900hxw.default -> hxxps://www.symbaloo.com/home/mix/13eP7083bb FF Extension: (Pale Moon Locale Switcher) - C:\Users\conta\AppData\Roaming\Moonchild Productions\Pale Moon\Profiles\4b900hxw.default\Extensions\pm-localeswitch@palemoon.org.xpi [2021-04-23] [] [non signé] FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> D:\Logiciel\pdfxchange viewer\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin: @videolan.org/vlc,version=3.0.14 -> D:\Logiciel\VLC\npvlc.dll [2021-05-10] (VideoLAN -> VideoLAN) FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> D:\Logiciel\pdfxchange viewer\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.cpdf -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [Pas de fichier] FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [Pas de fichier] FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [Pas de fichier] FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> D:\Logiciel\Foxit reader\Foxit Reader\plugins\npFoxitReaderPlugin.dll [Pas de fichier] FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> D:\Logiciel\Foxit reader\Foxit Reader\plugins\npFoxitReaderPlugin.dll [Pas de fichier] FF Plugin-x32: @videolan.org/vlc,version=3.0.11 -> D:\Logiciel\vlc\npvlc.dll [2021-05-10] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.12 -> D:\Logiciel\vlc\npvlc.dll [2021-05-10] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.8 -> D:\Logiciel\vlc\npvlc.dll [2021-05-10] (VideoLAN -> VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-04-27] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-1500095853-800338277-2208543213-1001: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> D:\Logiciel\pdfxchange viewer\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) Chrome: ======= CHR DefaultProfile: Profile 1 CHR Profile: C:\Users\conta\AppData\Local\Google\Chrome\User Data\Guest Profile [2021-06-03] CHR Profile: C:\Users\conta\AppData\Local\Google\Chrome\User Data\Profile 1 [2021-06-06] CHR HomePage: Profile 1 -> hxxps://www.symbaloo.com/home/mix/13eP7083bb CHR StartupUrls: Profile 1 -> "hxxps://www.symbaloo.com/home/mix/perso5" CHR Extension: (Slides) - C:\Users\conta\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-02-13] CHR Extension: (Docs) - C:\Users\conta\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2021-02-13] CHR Extension: (Google Drive) - C:\Users\conta\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-02-13] CHR Extension: (YouTube) - C:\Users\conta\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-02-13] CHR Extension: (Sheets) - C:\Users\conta\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-02-13] CHR Extension: (Google Docs hors connexion) - C:\Users\conta\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-05-28] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\conta\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-05] CHR Extension: (Gmail) - C:\Users\conta\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-02-13] CHR Extension: (Chrome Media Router) - C:\Users\conta\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-04-23] CHR Profile: C:\Users\conta\AppData\Local\Google\Chrome\User Data\System Profile [2021-06-03] Opera: ======= OPR Profile: C:\Users\conta\AppData\Roaming\Opera Software\Opera Stable [2021-06-03] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [96056 2020-05-20] (Apple Inc. -> Apple Inc.) R2 DolbyDAXAPI; C:\WINDOWS\system32\dolbyaposvc\DAX3API.exe [1926600 2019-09-02] (Dolby Laboratories, Inc. -> ) R2 FMAPOService; C:\WINDOWS\System32\FMService64.exe [359808 2019-08-16] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [236864 2020-12-05] (Huawei Technologies Co., Ltd. -> ) R2 ImControllerService; C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81824 2021-03-14] (Lenovo -> Lenovo Group Ltd.) R2 LenovoVantageService; C:\Program Files (x86)\Lenovo\VantageService\3.7.19.0\LenovoVantageService.exe [28576 2021-05-17] (Lenovo -> Lenovo Group Ltd.) R2 MyMediaForAlexa; C:\Program Files\MyMediaForAlexa\MyMediaForAlexa.exe [3140280 2019-02-18] (bizmodeller Ltd -> bizmodeller Ltd) S3 QFXUpdateService; C:\Program Files (x86)\KeyScrambler\x64\QFXUpdateService.exe [87184 2020-02-18] (QFX Software Corporation -> ) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.4-0\NisSrv.exe [2644760 2021-06-05] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.4-0\MsMpEng.exe [136656 2021-06-05] (Microsoft Windows Publisher -> Microsoft Corporation) S2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [X] ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2018-12-12] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2020-12-05] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) R3 KeyScrambler; C:\WINDOWS\System32\drivers\keyscrambler.sys [243800 2018-09-08] (QFX Software Corporation -> QFX Software Corporation) R1 UimBus; C:\WINDOWS\System32\drivers\UimBus.sys [102664 2014-07-09] (Paragon Software GmbH -> ) R1 Uim_DEVIM; C:\WINDOWS\System32\drivers\uim_devim.sys [25992 2014-07-09] (Paragon Software GmbH -> ) R1 Uim_IM; C:\WINDOWS\System32\drivers\uim_im.sys [700296 2014-07-09] (Paragon Software GmbH -> ) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49560 2021-06-05] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [425208 2021-06-05] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [76008 2021-06-05] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Trois mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-06-06 11:34 - 2021-06-06 11:34 - 000032586 _____ C:\Users\conta\Desktop\FRST.txt 2021-06-06 11:33 - 2021-06-06 11:34 - 000000000 ____D C:\FRST 2021-06-06 11:31 - 2021-06-06 11:31 - 000339413 _____ C:\Users\conta\Desktop\ZHPDiag.txt 2021-06-06 11:28 - 2021-06-06 11:27 - 002300416 _____ (Farbar) C:\Users\conta\Desktop\FRST64.exe 2021-06-06 11:25 - 2021-06-06 11:25 - 000000912 _____ C:\Users\conta\Desktop\ZHPSuite.lnk 2021-06-06 11:23 - 2021-06-06 11:23 - 003471512 _____ (Nicolas Coolman) C:\Users\conta\Desktop\ZHPSuite.exe 2021-06-06 07:35 - 2021-06-06 07:35 - 000063384 _____ C:\Users\conta\Desktop\60ba392a9cac3_safe_image-5341048.webp 2021-06-06 03:35 - 2021-06-06 03:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2021-06-05 03:58 - 2021-06-05 04:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Directory List & Print (Pro) 2021-06-05 03:58 - 2021-06-05 04:01 - 000000000 ____D C:\Users\conta\AppData\Roaming\DirectoryListPrintPro 2021-06-04 06:45 - 2021-06-04 06:45 - 000000000 ____D C:\Users\conta\Documents\FormatFactory 2021-06-04 06:45 - 2021-06-04 06:45 - 000000000 ____D C:\Users\conta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory 2021-06-04 06:45 - 2021-06-04 06:45 - 000000000 ____D C:\Users\conta\AppData\Local\FTMod 2021-06-04 06:45 - 2021-06-04 06:45 - 000000000 ____D C:\Program Files (x86)\FormatFactory 2021-06-04 06:44 - 2021-06-04 06:44 - 000000000 ____D C:\Users\conta\AppData\Local\FF001 2021-06-04 05:29 - 2021-06-04 05:29 - 000000000 ____D C:\Users\conta\Documents\Aiseesoft Studio 2021-06-04 05:29 - 2021-06-04 05:29 - 000000000 ____D C:\Users\conta\AppData\Local\Aiseesoft Studio 2021-06-04 05:29 - 2021-06-04 05:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Aiseesoft 2021-06-04 05:29 - 2021-06-04 05:29 - 000000000 ____D C:\ProgramData\Aiseesoft Studio 2021-06-04 05:28 - 2021-06-04 05:28 - 000000000 ____D C:\Program Files\Aiseesoft Studio 2021-06-04 05:18 - 2021-06-04 05:24 - 000000000 ____D C:\Users\conta\Downloads\FormatFactory2021_06_04 2021-06-04 05:03 - 2021-06-04 05:35 - 000000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2021-06-03 09:55 - 2021-06-03 10:35 - 000000000 ____D C:\Users\conta\Downloads\FormatFactory2021_06_03 2021-06-03 03:33 - 2021-06-03 03:33 - 000821286 _____ C:\Users\conta\AppData\Local\af99a2680e8d46e282cf2cc3b6a24741.PS1 2021-06-02 10:37 - 2021-06-02 10:37 - 000821286 _____ C:\Users\conta\AppData\Local\e4630b26197b4b9aa85ca5e9f458478c.PS1 2021-06-02 06:08 - 2021-06-02 06:08 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2021-06-02 05:52 - 2021-06-02 10:36 - 000000000 ____D C:\Program Files\Mozilla Firefox 2021-06-02 05:27 - 2021-06-02 05:27 - 000821286 _____ C:\Users\conta\AppData\Local\f36e76df410a4bc6a880dc0ec821b564.PS1 2021-06-01 14:47 - 2021-06-01 14:47 - 000000000 ____D C:\Users\conta\AppData\Roaming\WinRAR 2021-06-01 14:47 - 2021-06-01 14:47 - 000000000 ____D C:\Users\conta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2021-06-01 14:47 - 2021-06-01 14:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2021-06-01 14:47 - 2021-06-01 14:47 - 000000000 ____D C:\Program Files\WinRAR 2021-06-01 14:09 - 2021-06-03 03:34 - 001237898 _____ C:\Users\Public\8995.ps1 2021-06-01 13:32 - 2021-06-01 13:32 - 000000000 ____D C:\Program Files (x86)\7-Zip 2021-05-28 06:16 - 2021-05-28 06:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CodeTwo 2021-05-27 07:29 - 2021-05-27 07:29 - 000001217 _____ C:\Users\conta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon Music.lnk 2021-05-27 07:29 - 2021-05-27 07:29 - 000000000 ____D C:\Users\conta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon Music 2021-05-27 07:29 - 2021-05-27 07:29 - 000000000 ____D C:\Users\conta\AppData\Local\Amazon Music 2021-05-22 06:23 - 2021-05-22 07:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Artweaver Free 2021-05-22 06:23 - 2021-05-22 06:23 - 000000000 ____D C:\Users\conta\AppData\Roaming\Artweaver Free 2021-05-22 06:23 - 2021-05-22 06:23 - 000000000 ____D C:\ProgramData\Artweaver Free 2021-05-22 06:23 - 2021-05-22 06:23 - 000000000 ____D C:\Program Files (x86)\Artweaver Retouche photo 2021-05-18 14:17 - 2021-05-18 14:17 - 000000000 ____D C:\Users\conta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bridge Base Online 2021-05-15 04:39 - 2021-05-15 04:39 - 000001235 _____ C:\Users\conta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zeta Uploader.lnk 2021-05-15 04:39 - 2021-05-15 04:39 - 000000000 ____D C:\Users\conta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zeta Uploader 2021-05-15 04:39 - 2021-05-15 04:39 - 000000000 ____D C:\Users\conta\AppData\Local\Zeta Uploader 2021-05-15 04:08 - 2021-05-15 04:09 - 000000000 ____D C:\Users\conta\AppData\Roaming\LosslessCut 2021-05-14 08:47 - 2021-05-14 08:47 - 000001263 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Facebook Multi Downloader.lnk 2021-05-14 08:47 - 2021-05-14 08:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\(Default) 2021-05-14 08:47 - 2021-05-14 08:47 - 000000000 ____D C:\Program Files (x86)\Facebook Multi Downloader 2021-05-13 02:51 - 2021-05-13 02:51 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2021-05-13 02:51 - 2021-05-13 02:51 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2021-05-13 02:51 - 2021-05-13 02:51 - 001823816 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2021-05-13 02:51 - 2021-05-13 02:51 - 001687040 _____ C:\WINDOWS\system32\libcrypto.dll 2021-05-13 02:51 - 2021-05-13 02:51 - 001393504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2021-05-13 02:51 - 2021-05-13 02:51 - 001314120 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2021-05-13 02:51 - 2021-05-13 02:51 - 001163776 _____ C:\WINDOWS\system32\MBR2GPT.EXE 2021-05-13 02:51 - 2021-05-13 02:51 - 000700928 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll 2021-05-13 02:51 - 2021-05-13 02:51 - 000165888 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe 2021-05-13 02:51 - 2021-05-13 02:51 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe 2021-05-13 02:51 - 2021-05-13 02:51 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe 2021-05-13 02:51 - 2021-05-13 02:51 - 000011351 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2021-04-28 09:49 - 2021-04-28 09:49 - 000000041 _____ C:\Users\conta\AppData\Roaming\stsetting.ini 2021-04-27 10:19 - 2021-04-27 10:29 - 000000000 ____D C:\Users\conta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Coolmuster 2021-04-23 08:56 - 2021-06-02 05:28 - 000002256 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2021-04-23 08:56 - 2021-04-23 08:56 - 000000000 ____D C:\Program Files\Google 2021-04-23 08:55 - 2021-04-23 08:55 - 000003588 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2021-04-23 08:55 - 2021-04-23 08:55 - 000003464 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2021-04-23 08:06 - 2021-04-23 08:06 - 000000000 ____D C:\Users\conta\Documents\MEGAsync 2021-04-23 08:04 - 2021-04-23 08:04 - 000001172 _____ C:\Users\conta\Desktop\MEGAsync.lnk 2021-04-23 08:04 - 2021-04-23 08:04 - 000000000 ____D C:\Users\conta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEGAsync 2021-04-23 08:04 - 2021-04-23 08:04 - 000000000 ____D C:\Users\conta\AppData\Local\MEGAsync 2021-04-23 08:04 - 2021-04-23 08:04 - 000000000 ____D C:\Users\conta\AppData\Local\Mega Limited 2021-04-21 03:52 - 2021-04-21 03:52 - 000000000 ____D C:\WINDOWS\PCHEALTH 2021-04-21 03:52 - 2021-04-21 03:52 - 000000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2021-04-21 03:51 - 2021-04-21 03:52 - 000000000 ____D C:\Users\conta\AppData\Local\Windows Live 2021-04-21 03:51 - 2021-04-21 03:52 - 000000000 ____D C:\Program Files (x86)\Windows Live 2021-04-20 05:10 - 2021-04-20 05:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VirtualDub 2021-04-16 04:36 - 2021-04-16 04:36 - 000231248 _____ C:\WINDOWS\system32\containerdevicemanagement.dll 2021-04-15 10:49 - 2021-04-15 10:49 - 000001071 _____ C:\Users\conta\Desktop\HiSuite.lnk 2021-04-15 10:49 - 2021-04-15 10:49 - 000000000 ____D C:\Users\conta\Documents\HiSuite 2021-04-15 10:49 - 2021-04-15 10:49 - 000000000 ____D C:\Users\conta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HiSuite 2021-04-15 10:48 - 2021-04-15 10:49 - 000000000 ____D C:\Program Files (x86)\HiSuite 2021-04-08 03:24 - 2021-04-08 03:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator 2021-03-28 11:50 - 2021-03-28 11:50 - 000000000 ____D C:\Users\conta\AppData\Roaming\IQBoxShareSoftware 2021-03-28 11:50 - 2021-03-28 11:50 - 000000000 ____D C:\Users\conta\AppData\Local\IQBoxShareSoftware 2021-03-23 03:55 - 2021-03-23 03:55 - 000000000 ____D C:\Users\conta\AppData\Roaming\Neos Eureka S.r.l 2021-03-13 09:35 - 2021-03-13 09:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Attribute Changer 2021-03-11 03:31 - 2021-03-11 03:31 - 000707016 _____ C:\WINDOWS\system32\TextShaping.dll 2021-03-11 03:31 - 2021-03-11 03:31 - 000611952 _____ C:\WINDOWS\SysWOW64\TextShaping.dll 2021-03-11 03:31 - 2021-03-11 03:31 - 000091136 _____ C:\WINDOWS\system32\Drivers\cimfs.sys ==================== Trois mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-06-06 11:31 - 2020-08-18 14:34 - 000000000 ____D C:\Users\conta\AppData\Roaming\ZHP 2021-06-06 11:27 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-06-06 11:25 - 2020-08-18 14:34 - 000000000 ____D C:\Users\conta\AppData\Local\ZHP 2021-06-06 10:45 - 2020-05-04 12:17 - 000000000 ____D C:\ProgramData\Mozilla 2021-06-06 10:44 - 2020-05-04 12:17 - 000000000 ____D C:\Users\conta\AppData\LocalLow\Mozilla 2021-06-06 10:23 - 2020-12-12 18:14 - 000025570 _____ C:\Users\conta\Desktop\depense 2021.ods 2021-06-06 10:21 - 2021-02-27 12:56 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2021-06-06 08:06 - 2021-02-27 13:02 - 000004156 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{4FB6E3A9-40EB-4E3E-B014-6812897FD4CA} 2021-06-06 07:32 - 2020-05-04 12:57 - 000000000 ____D C:\Users\conta\AppData\Roaming\vlc 2021-06-06 05:20 - 2020-07-19 07:30 - 000000000 ____D C:\Program Files\MyMediaForAlexa 2021-06-06 04:18 - 2020-09-25 03:12 - 000000000 ____D C:\Program Files\CCleaner 2021-06-06 03:13 - 2019-05-16 04:03 - 000000000 ____D C:\ProgramData\Package Cache 2021-06-06 02:05 - 2021-01-04 10:28 - 000032256 _____ C:\Users\conta\Desktop\gaz mars 2021 à fev 2022.ods 2021-06-06 01:41 - 2020-05-04 10:38 - 000000000 __SHD C:\Users\conta\IntelGraphicsProfiles 2021-06-05 14:11 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2021-06-05 12:51 - 2018-09-19 20:10 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2021-06-05 12:41 - 2020-06-26 06:11 - 000002453 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-06-05 12:41 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2021-06-04 17:38 - 2021-02-27 13:04 - 001770910 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2021-06-04 17:38 - 2019-12-07 16:49 - 000794488 _____ C:\WINDOWS\system32\perfh00C.dat 2021-06-04 17:38 - 2019-12-07 16:49 - 000150602 _____ C:\WINDOWS\system32\perfc00C.dat 2021-06-04 17:38 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF 2021-06-04 05:35 - 2020-05-04 12:28 - 000001289 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk 2021-06-04 05:35 - 2020-05-04 12:17 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2021-06-03 05:39 - 2021-02-27 13:02 - 000003542 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2021-06-03 05:39 - 2021-02-27 13:02 - 000002296 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC 2021-06-03 05:38 - 2021-02-27 11:25 - 000000000 ___DC C:\WINDOWS\Panther 2021-06-03 05:36 - 2020-08-25 11:02 - 000000000 ____D C:\Users\conta\AppData\Roaming\Mp3tag 2021-06-03 04:29 - 2020-08-26 07:55 - 000000952 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SyncBackFree.lnk 2021-06-03 04:21 - 2020-12-04 09:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mp3tag 2021-06-03 04:18 - 2021-02-27 13:02 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2021-06-02 10:37 - 2020-11-01 17:06 - 000005846 _____ C:\WINDOWS\system32\InstallUtil.InstallLog 2021-06-02 10:36 - 2021-02-27 13:02 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2021-06-02 10:36 - 2021-02-27 12:56 - 000008192 ___SH C:\DumpStack.log.tmp 2021-06-02 10:36 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState 2021-06-02 10:36 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2021-06-02 10:36 - 2019-05-16 04:18 - 000000134 _____ C:\WINDOWS\system32\regtest.txt 2021-06-02 06:08 - 2020-08-18 13:35 - 000001016 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2021-05-28 10:05 - 2020-05-04 12:41 - 000057806 _____ C:\Users\conta\Desktop\tel du nov 2019.ods 2021-05-21 07:18 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2021-05-17 14:34 - 2020-06-09 06:11 - 000000000 ____D C:\Users\conta\AppData\Local\LenovoServiceBridge 2021-05-17 07:03 - 2020-10-06 06:22 - 000000000 ____D C:\Users\conta\dwhelper 2021-05-16 08:38 - 2020-05-04 13:16 - 000000000 ____D C:\Users\conta\AppData\Roaming\Molotov 2021-05-15 04:38 - 2020-10-29 03:51 - 000000000 ____D C:\Users\conta\AppData\Roaming\avidemux 2021-05-13 05:12 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2021-05-13 05:09 - 2021-02-27 12:56 - 000291144 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2021-05-13 05:09 - 2019-12-07 16:51 - 000000000 ____D C:\WINDOWS\system32\OpenSSH 2021-05-13 05:09 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\PrintDialog 2021-05-13 05:09 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2021-05-13 05:09 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2021-05-13 05:09 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2021-05-13 05:09 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2021-05-13 05:09 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2021-05-13 05:09 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources 2021-05-13 05:09 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2021-05-13 05:09 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2021-05-13 05:09 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup 2021-05-13 05:09 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2021-05-13 05:09 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2021-05-13 05:09 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2021-05-13 05:09 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning 2021-05-13 05:09 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2021-05-13 05:09 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\DiagTrack 2021-05-13 05:09 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2021-05-13 02:54 - 2019-12-07 16:53 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll 2021-05-13 02:42 - 2020-05-04 12:49 - 000000000 ____D C:\WINDOWS\system32\MRT 2021-05-13 02:40 - 2020-05-04 12:49 - 132732536 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2021-05-12 04:18 - 2020-09-25 03:01 - 000002147 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2021-05-07 07:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports ==================== Fichiers à la racine de certains dossiers ======== 2021-01-23 05:18 - 2021-03-28 07:42 - 000000855 _____ () C:\Users\conta\AppData\Roaming\FSLog.log 2021-04-28 09:49 - 2021-04-28 09:49 - 000000041 _____ () C:\Users\conta\AppData\Roaming\stsetting.ini 2021-06-03 03:33 - 2021-06-03 03:33 - 000821286 _____ () C:\Users\conta\AppData\Local\af99a2680e8d46e282cf2cc3b6a24741.PS1 2021-06-02 10:37 - 2021-06-02 10:37 - 000821286 _____ () C:\Users\conta\AppData\Local\e4630b26197b4b9aa85ca5e9f458478c.PS1 2020-09-05 04:13 - 2021-01-23 04:57 - 000000129 _____ () C:\Users\conta\AppData\Local\ecf81c3ad8bc03595e9e09d117d92c37 2021-06-02 05:27 - 2021-06-02 05:27 - 000821286 _____ () C:\Users\conta\AppData\Local\f36e76df410a4bc6a880dc0ec821b564.PS1 2020-05-08 06:24 - 2020-05-08 06:24 - 000000017 _____ () C:\Users\conta\AppData\Local\resmon.resmoncfg ==================== SigCheckExt ========================= 2020-09-25 09:20 - 2020-09-25 09:20 - 000116736 _____ (pdfforge GmbH) C:\WINDOWS\system32\pdfcmon.dll 2020-05-10 03:46 - 1998-07-13 02:00 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CMDLGFR.DLL 2020-05-10 03:46 - 1998-07-13 01:00 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\INETFR.DLL 2020-05-10 03:46 - 1998-07-13 03:00 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCIFR.DLL 2020-05-10 03:46 - 1998-07-13 02:00 - 000141312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSCMCFR.DLL 2020-05-10 03:46 - 1998-07-13 01:00 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSMPIFR.DLL 2020-05-10 03:46 - 2001-08-24 15:00 - 001355776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvbvm50.dll 2020-05-10 03:46 - 2000-10-02 03:00 - 000119568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VB6FR.DLL 2020-05-10 03:46 - 2000-07-15 03:00 - 000101888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VB6STKIT.DLL 2020-05-10 03:46 - 2005-10-14 11:57 - 000237568 _____ (EnAppSys Ltd) C:\WINDOWS\SysWOW64\vbXML.dll 2020-05-10 03:46 - 2005-10-16 17:34 - 000151552 _____ (EnAppSys Ltd) C:\WINDOWS\SysWOW64\vbXMLRPC.dll 2021-06-06 11:28 - 2021-06-06 11:27 - 002300416 _____ (Farbar) C:\Users\conta\Desktop\FRST64.exe 2021-06-06 11:23 - 2021-06-06 11:23 - 003471512 _____ (Nicolas Coolman) C:\Users\conta\Desktop\ZHPSuite.exe ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== BCD ================================ Gestionnaire de d‚marrage du microprogramme ------------------------------------------- identificateur {fwbootmgr} displayorder {bootmgr} {5dad00f1-77d1-11e9-8ff4-806e6f6e6963} {5dad00f2-77d1-11e9-8ff4-806e6f6e6963} {5dad00f3-77d1-11e9-8ff4-806e6f6e6963} timeout 0 Gestionnaire de d‚marrage Windows --------------------------------- identificateur {bootmgr} device partition=\Device\HarddiskVolume3 path \EFI\Microsoft\Boot\bootmgfw.efi description Windows Boot Manager locale fr-FR inherit {globalsettings} default {current} resumeobject {721fdc6f-bbad-11ea-9cd2-3cf011327b1a} displayorder {current} toolsdisplayorder {memdiag} timeout 0 Application logicielle (101fffff) -------------------------------- identificateur {5dad00f1-77d1-11e9-8ff4-806e6f6e6963} description EFI USB Device Application logicielle (101fffff) -------------------------------- identificateur {5dad00f2-77d1-11e9-8ff4-806e6f6e6963} description EFI DVD/CDROM Application logicielle (101fffff) -------------------------------- identificateur {5dad00f3-77d1-11e9-8ff4-806e6f6e6963} description EFI Network Chargeur de d‚marrage Windows ----------------------------- identificateur {current} device partition=C: path \WINDOWS\system32\winload.efi description Windows 10 locale fr-FR inherit {bootloadersettings} recoverysequence {721fdc72-bbad-11ea-9cd2-3cf011327b1a} displaymessageoverride Recovery recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \WINDOWS resumeobject {721fdc6f-bbad-11ea-9cd2-3cf011327b1a} nx OptIn bootmenupolicy Standard Chargeur de d‚marrage Windows ----------------------------- identificateur {721fdc72-bbad-11ea-9cd2-3cf011327b1a} device ramdisk=[\Device\HarddiskVolume6]\Recovery\WindowsRE\Winre.wim,{721fdc73-bbad-11ea-9cd2-3cf011327b1a} path \windows\system32\winload.efi description Windows Recovery Environment locale fr-FR inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[\Device\HarddiskVolume6]\Recovery\WindowsRE\Winre.wim,{721fdc73-bbad-11ea-9cd2-3cf011327b1a} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Reprendre … partir de la mise en veille prolong‚e ------------------------------------------------- identificateur {721fdc6f-bbad-11ea-9cd2-3cf011327b1a} device partition=C: path \WINDOWS\system32\winresume.efi description Windows Resume Application locale fr-FR inherit {resumeloadersettings} recoverysequence {721fdc72-bbad-11ea-9cd2-3cf011327b1a} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Testeur de m‚moire Windows -------------------------- identificateur {memdiag} device partition=\Device\HarddiskVolume3 path \EFI\Microsoft\Boot\memtest.efi description Diagnostics m‚moire Windows locale fr-FR inherit {globalsettings} badmemoryaccess Yes ParamŠtres EMS -------------- identificateur {emssettings} bootems No ParamŠtres du d‚bogueur ----------------------- identificateur {dbgsettings} debugtype Local Erreurs de m‚moire RAM ---------------------- identificateur {badmemory} ParamŠtres globaux ------------------ identificateur {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} ParamŠtres du chargeur de d‚marrage ----------------------------------- identificateur {bootloadersettings} inherit {globalsettings} {hypervisorsettings} ParamŠtres de l'hyperviseur ------------------- identificateur {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 ParamŠtres du chargeur de reprise --------------------------------- identificateur {resumeloadersettings} inherit {globalsettings} Options de p‚riph‚rique ----------------------- identificateur {721fdc73-bbad-11ea-9cd2-3cf011327b1a} description Windows Recovery ramdisksdidevice partition=\Device\HarddiskVolume6 ramdisksdipath \Recovery\WindowsRE\boot.sdi ==================== Fin de FRST.txt ========================