Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 14-07-2021 Exécuté par samue (administrateur) sur DESKTOP-EOBKJTU (Micro-Star International Co., Ltd MS-7B86) (18-07-2021 22:53:25) Exécuté depuis E:\samue\Téléchargements Profils chargés: samue Platform: Windows 10 Pro Version 20H2 19042.1110 (X64) Langue: Français (France) Navigateur par défaut: Edge Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Acronis International GmbH -> ) C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe (Acronis International GmbH -> ) C:\Program Files (x86)\Common Files\Acronis\ActiveProtection\anti_ransomware_service.exe (Acronis International GmbH -> ) C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe (Acronis International GmbH -> ) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\aakore.exe (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\bin\monitoring-mini.exe (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\bin\task-manager.exe (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\TibMounter\tib_mounter_monitor.exe (Acronis International GmbH -> Acronis International GmbH.) C:\Program Files (x86)\Acronis\Agent\bin\adp-agent.exe (Acronis International GmbH -> Acronis International GmbH.) C:\Program Files (x86)\Acronis\Agent\bin\updater.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iTunes_12113.17.53090.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (A-Volute SAS -> A-Volute) C:\Users\samue\AppData\Local\NhNotifSys\nahimic\nahimicNotifSys.exe (A-Volute SAS -> Nahimic) C:\Windows\System32\NahimicService.exe (Canon Inc. -> ) C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe (Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\Corsair.Service.CpuIdRemote64.exe (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\Corsair.Service.DisplayAdapter.exe (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\Corsair.Service.exe (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\CueLLAccessService.exe (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\iCUE.exe (Discord Inc. -> Discord Inc.) C:\Users\samue\AppData\Local\Discord\app-1.0.9002\Discord.exe <6> (Electronic Arts, Inc. -> ) J:\Origin\QtWebEngineProcess.exe <5> (Electronic Arts, Inc. -> Electronic Arts) J:\Origin\Origin.exe (Electronic Arts, Inc. -> Electronic Arts) J:\Origin\OriginClientService.exe (Electronic Arts, Inc. -> Electronic Arts) J:\Origin\OriginWebHelperService.exe (Even Balance, Inc. -> ) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> ) C:\Windows\SysWOW64\PnkBstrB.exe (Gaijin Network LTD -> Gaijin) C:\Users\samue\AppData\Local\Gaijin\Program Files (x86)\NetAgent\gjagent.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.92\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.92\GoogleCrashHandler64.exe (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <17> (Locktime Software s.r.o. -> Locktime Software) C:\Program Files\Locktime Software\NetLimiter 4\NLClientApp.exe (Locktime Software s.r.o. -> Locktime Software) C:\Program Files\Locktime Software\NetLimiter 4\NLSvc.exe (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub.exe <3> (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe (MAGIX Software GmbH -> MAGIX Computer Products Intl. Co.) [Fichier non signé] C:\Program Files\VEGAS\VEGAS Pro 18.0\vegas180.exe (MAGIX Software GmbH -> MAGIX Computer Products Intl. Co.) C:\Program Files\VEGAS\VEGAS Pro 18.0\ErrorReportLauncher.exe (MAGIX Software GmbH -> MAGIX Computer Products Intl. Co.) C:\Program Files\VEGAS\VEGAS Pro 18.0\x86\FileIOSurrogate.exe (MAGIX Software GmbH -> MAGIX Computer Products Intl. Co.) C:\Program Files\VEGAS\VEGAS Pro 18.0\x86\sfvstserver.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <41> (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) C:\Users\samue\AppData\Local\Microsoft\Teams\current\Teams.exe <9> (Microsoft Corporation -> Microsoft Corporation) C:\Users\samue\AppData\Local\Temp\onedrive.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_3.2106.14307.0_x64__8wekyb3d8bbwe\Cortana.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20920.0_x64__8wekyb3d8bbwe\HxOutlook.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20920.0_x64__8wekyb3d8bbwe\HxTsr.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12105.1001.23.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <4> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) C:\Windows\System32\CorsairGamingAudioCfgService64.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2106.6-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2106.6-0\NisSrv.exe (MICRO-STAR INTERNATIONAL CO., LTD) C:\Program Files\WindowsApps\9426MICRO-STARINTERNATION.DragonCenter_2.0.109.0_x64__kzh8wxbdkxb8p\DCv2\DCv2.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\One Dragon Center\Game_Summary\MSI_Companion_Service.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\One Dragon Center\MSI.CentralServer.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\One Dragon Center\MSI_Central_Service.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\LEDKeeper2.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\LightKeeperService.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\Mystic_Light_Service.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\One Dragon Center\Nahimic\NahimicMonitorX64.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\One Dragon Center\True Color\MSI.True Color.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\One Dragon Center\VoiceControl\VoiceControl_Service.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\One Dragon Center\VoiceControl\VoiceControlEngine.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Program Files (x86)\MSI\One Dragon Center\CC_Engine_x64.exe (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_b2801df14ec7de03\Display.NvContainer\NVDisplay.Container.exe <2> (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Overwolf Ltd -> Overwolf LTD) C:\Program Files (x86)\Common Files\Overwolf\0.174.0.10\OverwolfHelper.exe (Overwolf Ltd -> Overwolf LTD) C:\Program Files (x86)\Common Files\Overwolf\0.174.0.10\OverwolfHelper64.exe (Overwolf Ltd -> Overwolf LTD) C:\Program Files (x86)\Overwolf\0.174.0.10\OverwolfBrowser.exe <3> (Overwolf Ltd -> Overwolf LTD) C:\Program Files (x86)\Overwolf\Overwolf.exe (Overwolf Ltd -> Overwolf LTD) C:\Users\samue\AppData\Local\Overwolf\ProcessCache\0.174.0.10\cchhcaiapeikjbdbpfplgmpobbcdkdaphclbmkbj\curseforge.exe (Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_f31d3fd59f245137\RtkAudUService64.exe <2> (Spotify AB) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.163.568.0_x86__zpdnekdrzrea0\Spotify.exe <6> (Valve -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <7> (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [824128 2020-08-25] (Acronis International GmbH -> Acronis International GmbH) HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_f31d3fd59f245137\RtkAudUService64.exe [1255264 2021-03-25] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM-x32\...\Run: [CORSAIR iCUE Software] => C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\iCUE Launcher.exe [410152 2020-12-29] (Corsair Memory, Inc. -> Corsair Memory, Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [706680 2020-12-09] (Oracle America, Inc. -> Oracle Corporation) HKLM-x32\...\Run: [AcronisTibMounterMonitor] => C:\Program Files (x86)\Common Files\Acronis\TibMounter\tib_mounter_monitor.exe [443424 2020-08-25] (Acronis International GmbH -> Acronis International GmbH) HKLM-x32\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [454248 2013-08-02] (Canon Inc. -> CANON INC.) HKU\S-1-5-21-343162563-269056937-406375262-1001\...\Run: [Discord] => C:\Users\samue\AppData\Local\Discord\Update.exe [1512760 2020-12-03] (Discord Inc. -> GitHub) HKU\S-1-5-21-343162563-269056937-406375262-1001\...\Run: [Battle.net] => C:\Program Files (x86)\Battle.net\Battle.net.exe [1079184 2021-07-16] (Blizzard Entertainment, Inc. -> Blizzard Entertainment) HKU\S-1-5-21-343162563-269056937-406375262-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [34508416 2021-06-17] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-343162563-269056937-406375262-1001\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe [1729368 2021-07-04] (Overwolf Ltd -> Overwolf Ltd.) HKU\S-1-5-21-343162563-269056937-406375262-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\samue\AppData\Local\Microsoft\Teams\Update.exe [2454200 2021-06-26] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKU\S-1-5-21-343162563-269056937-406375262-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4110568 2021-07-13] (Valve -> Valve Corporation) HKU\S-1-5-21-343162563-269056937-406375262-1001\...\Run: [Gaijin.Net Updater] => C:\Users\samue\AppData\Local\Gaijin\Program Files (x86)\NetAgent\gjagent.exe [2374376 2020-12-03] (Gaijin Network LTD -> Gaijin) HKU\S-1-5-21-343162563-269056937-406375262-1001\...\Run: [NetLimiter] => C:\Program Files\Locktime Software\NetLimiter 4\nlclientapp.exe [96840 2021-05-06] (Locktime Software s.r.o. -> Locktime Software) HKU\S-1-5-21-343162563-269056937-406375262-1001\...\Run: [EADM] => J:\Origin\Origin.exe [3144816 2021-06-22] (Electronic Arts, Inc. -> Electronic Arts) HKU\S-1-5-21-343162563-269056937-406375262-1001\...\Run: [GoogleChromeAutoLaunch_F8E8961597C1F92A34A91B2299505C2E] => "C:\Program Files\Google\Chrome\Application\chrome.exe" --no-startup-window /prefetch:5 HKU\S-1-5-21-343162563-269056937-406375262-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\lghub.exe [123792288 2021-06-30] (Logitech Inc -> Logitech, Inc.) HKLM\...\Windows x64\Print Processors\Canon MX470 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDC2.DLL [30208 2013-09-12] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJ FAX Language Monitor MX470 series: C:\Windows\system32\CNCALC2.DLL [303104 2013-09-25] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJ Language Monitor MX470 series: C:\Windows\system32\CNMLMC2.DLL [391168 2013-09-12] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJNP Port: C:\Windows\system32\CNMN6PPM.DLL [360448 2013-09-11] (CANON INC.) [Fichier non signé] HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\91.0.4472.124\Installer\chrmstp.exe [2021-07-02] (Google LLC -> Google LLC) Startup: C:\Users\samue\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\AcronisTrue.exe [2020-08-28] (Acronis International GmbH -> ) [Fichier non signé] Startup: C:\Users\samue\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Envoyer à OneNote.lnk [2021-07-13] ShortcutTarget: Envoyer à OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {01750BAE-137D-4D52-BE73-64D09ED5E60D} - System32\Tasks\MSI Task Host - MSI.True Color => C:\Program Files (x86)\MSI\One Dragon Center\True Color\MSI.True Color.exe [44720 2020-05-13] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) Task: {23FD8681-7A76-4E9C-9B10-466B9B280A87} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2021-01-22] (Google LLC -> Google LLC) Task: {2F9E5AE8-D6EF-4D19-8079-1708B4C09CE7} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2476376 2021-07-04] (Overwolf Ltd -> Overwolf LTD) Task: {31D88E79-CC00-4495-86F2-BFFD0E0E2274} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3336560 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {34B8638E-0797-4978-A78D-2FB7E3B96659} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1260400 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {38AE91FD-04F3-4618-9472-E46060B8023F} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [28880512 2021-06-17] (Piriform Software Ltd -> Piriform Software Ltd) Task: {41156CA0-8D31-419B-9923-EBEBC5EDF25F} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905584 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {4E1F8E46-8CEA-4675-969E-156E423DFC9A} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [145760 2021-06-16] (Microsoft Corporation -> Microsoft Corporation) Task: {52AC6F44-EA79-455A-B10B-54A7CB26EB06} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1260400 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {55E63370-ECAA-4027-BB53-DA352DDF4141} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {6637F6AD-8D2A-4CFE-BFDA-6E8FF3B5FC21} - System32\Tasks\MSI Task Host - Detect_Monitor => C:\Program Files (x86)\MSI\One Dragon Center\MSI.NotifyServer.exe [74528 2020-09-29] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) Task: {667D16E5-C488-4A8E-804D-25467CBFC073} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22774152 2021-06-06] (Microsoft Corporation -> Microsoft Corporation) Task: {6D40D0F0-8F28-498E-BB87-363CF29F2AD2} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [645488 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {7D8761C5-0380-4C97-9940-D3C7BF9C0B4F} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.) Task: {8360C21F-10A7-4710-B153-263CA29ED7F6} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2106.6-0\MpCmdRun.exe [644888 2021-07-09] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {88C1A328-56BC-44CB-9611-A350E5352855} - System32\Tasks\Microsoft\Office\Office Serviceability Manager => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\officesvcmgr.exe [4164168 2021-06-06] (Microsoft Corporation -> Microsoft Corporation) Task: {8A6A61EB-973E-420E-8873-027A3C96988A} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1260400 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {981C6B7C-8B4A-4925-84BE-32BEBAE567BC} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2106.6-0\MpCmdRun.exe [644888 2021-07-09] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {9A8C9148-66B6-4331-B0C9-E5EF1CE20654} - System32\Tasks\MSI Task Host - DisplayID => C:\Program Files (x86)\MSI\One Dragon Center\MSI.NotifyServer.exe [74528 2020-09-29] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) Task: {9D53AA91-08AA-4BA2-8837-83505547227D} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [5064616 2021-06-16] (Microsoft Corporation -> Microsoft Corporation) Task: {9FF56C7B-F012-48AA-A10A-A915B61B2B89} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2106.6-0\MpCmdRun.exe [644888 2021-07-09] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {A130484A-C896-432E-8940-D6FA22183119} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2021-01-22] (Google LLC -> Google LLC) Task: {B866B133-53DD-4402-A489-E1A2E26F4E56} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1260400 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {BAB905DE-BE0A-4CA9-AC57-A96FB4F55092} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [145760 2021-06-16] (Microsoft Corporation -> Microsoft Corporation) Task: {C718F810-5C8F-45B6-BADE-8CAF973AD636} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22774152 2021-06-06] (Microsoft Corporation -> Microsoft Corporation) Task: {CA102960-A2D0-4E06-899E-7A72DA9DE18D} - System32\Tasks\AMDAutoUpdate => C:\Program Files\AMD\AutoUpdate\AMDAutoUpdate.exe [677624 2019-11-21] (Advanced Micro Devices INC. -> ) Task: {CD20EF89-03C9-4AE9-B61A-EAFF60B165A6} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2021-06-17] (Piriform Software Ltd -> Piriform) Task: {D4FA8A30-7777-42EB-BB43-8261D91DBA88} - System32\Tasks\MSI Task Host - LEDKeeper2_Host => C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\LEDKeeper2.exe [1635088 2020-12-25] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) Task: {D5871C9D-700A-45DE-B1FB-8D237D75C512} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2106.6-0\MpCmdRun.exe [644888 2021-07-09] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {D7588F8C-A107-4BAD-9F20-DAC9CA67993D} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [5064616 2021-06-16] (Microsoft Corporation -> Microsoft Corporation) Task: {E09509ED-D299-47EA-B574-4416553FC74D} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905584 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {ED1BCEB3-A6BA-47D8-A031-E258D6702EE7} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704 2011-08-31] (Apple Inc. -> Apple Inc.) Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [132968 2011-08-31] (Apple Inc. -> Apple Inc.) Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{a84153e0-4761-49e7-8c9a-4fdef1f78bf4}: [DhcpNameServer] 192.168.1.254 HKLM\System\...\Parameters\PersistentRoutes: [169.254.0.0,255.255.0.0,192.168.1.7,1] Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\samue\AppData\Local\Microsoft\Edge\User Data\Default [2021-07-18] Edge DownloadDir: Default -> E:\samue\Téléchargements Edge Notifications: Default -> hxxps://codepromo.20minutes.fr; hxxps://www.facebook.com; hxxps://www.youtube.com Edge StartupUrls: Default -> "edge://apps/","hxxp://www.google.com/","hxxps://www.google.com/","hxxps://www.google.com/" Edge NewTab: Default -> Not-active:"chrome-extension://llaficoajjainaijghjlofdfmbjpebpa/newtab.html" Edge Extension: (Google Traduction) - C:\Users\samue\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2021-02-21] Edge Extension: (Earth and Moon) - C:\Users\samue\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\afmfhbdfjlfminjglfhcgcblgicnfcka [2021-06-20] Edge Extension: (Google Docs hors connexion) - C:\Users\samue\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-06-25] Edge Extension: (Amazon Assistant) - C:\Users\samue\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hkmnokmdbkkafgmpfhhiniclfnfpmogj [2021-04-25] Edge Extension: (Chrome Remote Desktop) - C:\Users\samue\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\inomeogfingihgjfjlpeplalcfajhgai [2021-02-21] Edge Extension: (EverSync - Sync bookmarks, backup favorites) - C:\Users\samue\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\iohcojnlgnfbmjfjfkbhahhmppcggdog [2021-02-21] Edge Extension: (Speed Dial [FVD] - New Tab Page, 3D, Sync...) - C:\Users\samue\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\llaficoajjainaijghjlofdfmbjpebpa [2021-02-21] Edge Extension: (CKP - KeePass integration for Chrome™) - C:\Users\samue\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\lnfepbjehgokldcaljagbmchhnaaogpc [2021-02-21] Edge Extension: (AdBlock — le meilleur bloqueur de pubs) - C:\Users\samue\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ndcileolkflehcjpmjnfbnaibdcgglog [2021-06-30] Edge Extension: (Reverso - Traduction, dictionnaire) - C:\Users\samue\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\onhiacboedfinnofagfgoaanfedhmfab [2021-02-21] FireFox: ======== FF Plugin: @java.com/DTPlugin,version=11.281.2 -> C:\Program Files\Java\jre1.8.0_281\bin\dtplugin\npDeployJava1.dll [2021-01-24] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.281.2 -> C:\Program Files\Java\jre1.8.0_281\bin\plugin2\npjp2.dll [2021-01-24] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-02-20] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.12 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll [2011-11-03] (Electronic Sports Network i Sverige AB -> ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [2013-09-16] (ESN Social Software AB) [Fichier non signé] FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2021-02-20] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2021-02-20] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-06-27] (Adobe Inc. -> Adobe Systems Inc.) Chrome: ======= CHR Profile: C:\Users\samue\AppData\Local\Google\Chrome\User Data\Default [2021-07-18] CHR DownloadDir: E:\samue\Téléchargements CHR Notifications: Default -> hxxps://forums.futura-sciences.com; hxxps://fr.aliexpress.com; hxxps://gaming.gentside.com; hxxps://lescrieursduweb.com; hxxps://magasin.evolutionpowertools.com; hxxps://www.allocine.fr; hxxps://www.castorama.fr; hxxps://www.dealabs.com; hxxps://www.doctissimo.fr; hxxps://www.facebook.com; hxxps://www.fnac.com; hxxps://www.gentside.com; hxxps://www.instagram.com; hxxps://www.jeuxvideo.com; hxxps://www.ldlc.com; hxxps://www.lesnumeriques.com; hxxps://www.marmiton.org; hxxps://www.mobile.club; hxxps://www.netflix.com; hxxps://www.ohmymag.com; hxxps://www.reddit.com; hxxps://www.terre-net.fr; hxxps://www.youtube.com CHR StartupUrls: Default -> "chrome://apps/","hxxp://www.google.com/","hxxps://www.google.com/","hxxps://www.google.com/" CHR NewTab: Default -> Active:"chrome-extension://llaficoajjainaijghjlofdfmbjpebpa/newtab.html" CHR DefaultSearchURL: Default -> hxxps://static.xx.fbcdn.net/rsrc.php/v3/ys/r/EdXnHjzXA5W.png CHR Extension: (Google Traduction) - C:\Users\samue\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2021-01-22] CHR Extension: (Slides) - C:\Users\samue\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-01-22] CHR Extension: (Docs) - C:\Users\samue\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2021-01-22] CHR Extension: (Google Drive) - C:\Users\samue\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-01-22] CHR Extension: (YouTube) - C:\Users\samue\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-01-22] CHR Extension: (Slinky Elégante) - C:\Users\samue\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmanlajnpdncmhfkiccmbgeocgbncfln [2021-01-22] CHR Extension: (hxxps://www.credit-du-nord.fr/vos-comptes/par) - C:\Users\samue\AppData\Local\Google\Chrome\User Data\Default\Extensions\dincdfmacfgdhkagfobehfecjpfpjffn [2021-01-22] CHR Extension: (Google Play Musique) - C:\Users\samue\AppData\Local\Google\Chrome\User Data\Default\Extensions\fahmaaghhglfmonjliepjlchgpgfmobi [2021-01-22] CHR Extension: (Sheets) - C:\Users\samue\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-01-22] CHR Extension: (hxxps://www.paypal.com/myaccount/home) - C:\Users\samue\AppData\Local\Google\Chrome\User Data\Default\Extensions\feoeonjleeedcbbadlcanbfjmelbdofn [2021-01-22] CHR Extension: (Facebook) - C:\Users\samue\AppData\Local\Google\Chrome\User Data\Default\Extensions\gcodkehggfcbjadgfbemlmgmokcjlggm [2021-01-22] CHR Extension: (Google Docs hors connexion) - C:\Users\samue\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-06-25] CHR Extension: (AdBlock — le meilleur bloqueur de pubs) - C:\Users\samue\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2021-06-25] CHR Extension: (Chrome Remote Desktop) - C:\Users\samue\AppData\Local\Google\Chrome\User Data\Default\Extensions\inomeogfingihgjfjlpeplalcfajhgai [2021-01-22] CHR Extension: (EverSync - Sync bookmarks, backup favorites) - C:\Users\samue\AppData\Local\Google\Chrome\User Data\Default\Extensions\iohcojnlgnfbmjfjfkbhahhmppcggdog [2021-01-22] CHR Extension: (hxxps://www.creditmutuel.fr/cmmabn/fr/banque/) - C:\Users\samue\AppData\Local\Google\Chrome\User Data\Default\Extensions\jdfpegjmkcgohgmlenaokpcglfnhjffm [2021-01-22] CHR Extension: (Speed Dial [FVD] - New Tab Page, 3D, Sync...) - C:\Users\samue\AppData\Local\Google\Chrome\User Data\Default\Extensions\llaficoajjainaijghjlofdfmbjpebpa [2021-03-20] CHR Extension: (CKP - KeePass integration for Chrome™) - C:\Users\samue\AppData\Local\Google\Chrome\User Data\Default\Extensions\lnfepbjehgokldcaljagbmchhnaaogpc [2021-01-22] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\samue\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29] CHR Extension: (Reverso - Traduction, dictionnaire) - C:\Users\samue\AppData\Local\Google\Chrome\User Data\Default\Extensions\onhiacboedfinnofagfgoaanfedhmfab [2021-01-22] CHR Extension: (Assistant Amazon pour Chrome) - C:\Users\samue\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam [2021-04-24] CHR Extension: (Gmail) - C:\Users\samue\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-01-22] CHR Extension: (Chrome Media Router) - C:\Users\samue\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-06-05] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 aakore; C:\Program Files (x86)\Acronis\Agent\aakore.exe [15749536 2020-08-25] (Acronis International GmbH -> Acronis International GmbH) R2 AcronisActiveProtectionService; C:\Program Files (x86)\Common Files\Acronis\ActiveProtection\anti_ransomware_service.exe [10354592 2020-08-25] (Acronis International GmbH -> ) S4 AcronisCyberProtectionService; C:\Program Files\Acronis\CyberProtect\cyber-protect-service.exe [1412984 2020-08-25] (Acronis International GmbH -> Acronis International GmbH) R2 AcrSch2Svc; C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe [1259792 2020-08-25] (Acronis International GmbH -> Acronis International GmbH) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.) R2 afcdpsrv; C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe [6383976 2021-01-25] (Acronis International GmbH -> ) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8894752 2021-01-20] (BattlEye Innovations e.K. -> ) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8929688 2021-06-06] (Microsoft Corporation -> Microsoft Corporation) R2 CorsairGamingAudioConfig; C:\WINDOWS\system32\CorsairGamingAudioCfgService64.exe [616344 2020-11-19] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) R2 CorsairLLAService; C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\CueLLAccessService.exe [421928 2020-12-29] (Corsair Memory, Inc. -> Corsair Memory, Inc.) R2 CorsairService; C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\Corsair.Service.exe [80936 2020-12-29] (Corsair Memory, Inc. -> Corsair Memory, Inc.) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [784512 2021-05-02] (EasyAntiCheat Oy -> EasyAntiCheat Ltd) R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [84616 2013-06-28] (Canon Inc. -> ) R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [10752928 2021-06-30] (Logitech Inc -> Logitech, Inc.) R2 LightKeeperService; C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\LightKeeperService.exe [86776 2020-12-23] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) R2 mmsminisrv; C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe [4808088 2020-08-25] (Acronis International GmbH -> Acronis International GmbH) S3 mobile_backup_server; C:\Program Files (x86)\Common Files\Acronis\MobileBackupServer\mobile_backup_server.exe [3004128 2020-08-25] (Acronis International GmbH -> Acronis International GmbH) S3 mobile_backup_status_server; C:\Program Files (x86)\Acronis\TrueImageHome\mobile_backup_status_server.exe [2092856 2021-01-25] (Acronis International GmbH -> ) [Fichier non signé] R2 MSI_Central_Service; C:\Program Files (x86)\MSI\One Dragon Center\MSI_Central_Service.exe [147088 2020-07-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) R2 MSI_Companion_Service; C:\Program Files (x86)\MSI\One Dragon Center\Game_Summary\MSI_Companion_Service.exe [126200 2020-12-17] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) R2 Mystic_Light_Service; C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\Mystic_Light_Service.exe [35504 2020-07-09] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) R2 NahimicService; C:\WINDOWS\system32\NahimicService.exe [1675376 2021-03-29] (A-Volute SAS -> Nahimic) R2 nlsvc; C:\Program Files\Locktime Software\NetLimiter 4\NLSvc.exe [19016 2021-05-06] (Locktime Software s.r.o. -> Locktime Software) S3 OfficeSvcManagerAddons; C:\WINDOWS\system32\dllhost.exe /Processid:{2CA2E202-932F-4BA2-8771-195BB86398F5} [21312 2021-01-23] (Microsoft Windows -> Microsoft Corporation) R3 Origin Client Service; J:\Origin\OriginClientService.exe [2556048 2021-06-22] (Electronic Arts, Inc. -> Electronic Arts) R2 Origin Web Helper Service; J:\Origin\OriginWebHelperService.exe [3474584 2021-06-22] (Electronic Arts, Inc. -> Electronic Arts) S3 OverwolfUpdater; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2476376 2021-07-04] (Overwolf Ltd -> Overwolf LTD) R2 PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [76152 2021-06-20] (Even Balance, Inc. -> ) R2 PnkBstrB; C:\WINDOWS\SysWOW64\PnkBstrB.exe [215128 2021-06-22] (Even Balance, Inc. -> ) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5395384 2021-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) S3 ss_conn_launcher_service; C:\WINDOWS\System32\Samsung\EasySetup\ss_conn_launcher.exe [182128 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R2 syncagentsrv; C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe [7387352 2020-08-25] (Acronis International GmbH -> ) S3 Tib Mounter Service; C:\Program Files (x86)\Common Files\Acronis\TibMounter64\tib_mounter_service.exe [5871520 2020-08-25] (Acronis International GmbH -> Acronis International GmbH) S3 ucldr_battlegrounds_gl; C:\Program Files\Common Files\UNCHEATER\ucldr_battlegrounds_gl.exe [6973168 2021-06-19] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.) R2 VoiceControlService; C:\Program Files (x86)\MSI\One Dragon Center\VoiceControl\VoiceControl_Service.exe [32400 2020-07-06] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2106.6-0\NisSrv.exe [2665432 2021-07-09] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2106.6-0\MsMpEng.exe [136640 2021-07-09] (Microsoft Windows Publisher -> Microsoft Corporation) S3 zksvc; C:\Program Files\Common Files\PUBG\zksvc.exe [7163080 2021-06-19] (PUBG CORPORATION -> PUBG Corporation) R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_b2801df14ec7de03\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_b2801df14ec7de03\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R3 AmdSMBusSdk; C:\WINDOWS\System32\drivers\amdembsmbus.sys [42808 2021-04-07] (Advanced Micro Devices INC. -> Advanced Micro Devices, Inc) R3 amdWDT; C:\WINDOWS\System32\drivers\amdwdt.sys [40136 2021-02-04] (Advanced Micro Devices INC. -> Advanced Micro Devices, Inc) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) R2 BdDci; C:\WINDOWS\system32\DRIVERS\bddci.sys [367096 2020-08-25] (Bitdefender SRL -> Bitdefender) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Fichier non signé] R3 CorsairGamingAudioService; C:\WINDOWS\system32\DRIVERS\CorsairGamingAudio64.sys [60312 2020-11-19] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) R2 CorsairLLAccess3B84E98236B28D4E075D5737DF9F567A1FB76E8A; C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\CorsairLLAccess64.sys [21752 2020-11-19] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) R3 CorsairVBusDriver; C:\WINDOWS\System32\drivers\CorsairVBusDriver.sys [45984 2020-11-19] (Microsoft Windows Hardware Compatibility Publisher -> Corsair) R3 CorsairVHidDriver; C:\WINDOWS\System32\drivers\CorsairVHidDriver.sys [21920 2020-11-19] (Microsoft Windows Hardware Compatibility Publisher -> Corsair) R3 cpuz150; C:\WINDOWS\temp\cpuz150\cpuz150_x64.sys [44832 2021-07-16] (CPUID S.A.R.L.U. -> CPUID) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [159600 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R1 EneTechIo; C:\Windows\system32\drivers\ene.sys [20992 2020-05-12] (Microsoft Windows Hardware Compatibility Publisher -> ) R2 file_protector; C:\WINDOWS\System32\DRIVERS\file_protector.sys [694408 2021-01-25] (Acronis International GmbH -> Acronis International GmbH) R0 file_tracker; C:\WINDOWS\System32\DRIVERS\file_tracker.sys [386688 2021-01-25] (Acronis International GmbH -> Acronis International GmbH) R2 LGHUBTemperatureService; C:\Program Files\LGHUB\logi_core_temp.sys [22864 2021-06-30] (Logitech Inc -> Logitech) R3 libusb0; C:\WINDOWS\system32\DRIVERS\libusb0.sys [44480 2011-05-17] (Akeo Consulting -> hxxp://libusb-win32.sourceforge.net) R3 logi_joy_bus_enum; C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys [37200 2021-06-26] (Logitech Inc -> Logitech) R3 logi_joy_vir_hid; C:\WINDOWS\system32\drivers\logi_joy_vir_hid.sys [25928 2021-06-26] (Logitech Inc -> Logitech) R3 logi_joy_xlcore; C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys [66896 2021-06-26] (Logitech Inc -> Logitech) R1 MSIO; C:\Windows\system32\drivers\MsIo64.sys [17424 2020-01-19] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd) R3 Nahimic_Mirroring; C:\WINDOWS\System32\drivers\Nahimic_Mirroring.sys [85592 2020-06-16] (A-Volute -> Windows (R) Win 7 DDK provider) R1 ngscan; C:\WINDOWS\System32\DRIVERS\ngscan.sys [167712 2020-08-25] (Acronis International GmbH -> Acronis International GmbH) R0 nldrv; C:\WINDOWS\System32\drivers\nldrv.sys [192656 2021-05-06] (Locktime Software s.r.o. -> Locktime Software) R3 NTIOLib_CC_COMM; C:\Program Files (x86)\MSI\One Dragon Center\Lib\SYS\NTIOLib_X64.sys [14288 2017-07-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) R3 NTIOLib_MysticLight; C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\Lib\NTIOLib_X64.sys [14288 2017-07-11] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) S3 RtlWlanu; C:\WINDOWS\System32\drivers\rtwlanu.sys [9528128 2019-10-15] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167280 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 ss_conn_usb_driver2; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver2.sys [43376 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 tib; C:\WINDOWS\system32\DRIVERS\tib.sys [887024 2021-01-25] (Acronis International GmbH -> Acronis International GmbH) R2 tib_mounter; C:\WINDOWS\system32\DRIVERS\tib_mounter.sys [175744 2021-01-25] (Acronis International GmbH -> Acronis International GmbH) S3 tnd; C:\WINDOWS\system32\DRIVERS\tnd.sys [694904 2021-01-25] (Acronis International GmbH -> Acronis International GmbH) R2 virtual_file; C:\WINDOWS\System32\DRIVERS\virtual_file.sys [334968 2021-01-25] (Acronis International GmbH -> Acronis International GmbH) R0 volume_tracker; C:\WINDOWS\System32\DRIVERS\volume_tracker.sys [251016 2021-01-25] (Acronis International GmbH -> Acronis International GmbH) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49560 2021-07-09] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [425192 2021-07-09] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [76008 2021-07-09] (Microsoft Windows -> Microsoft Corporation) S3 xhunter1; C:\WINDOWS\xhunter1.sys [2729456 2021-06-19] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-07-18 22:52 - 2021-07-18 22:53 - 000000000 ____D C:\FRST 2021-07-18 22:50 - 2021-07-18 22:50 - 000423762 _____ C:\Users\samue\Desktop\ZHPDiag.txt 2021-07-18 22:44 - 2021-07-18 22:44 - 000000875 _____ C:\Users\samue\Desktop\ZHPSuite.lnk 2021-07-18 17:24 - 2021-07-18 17:24 - 000000000 ____D C:\ProgramData\Apple Computer 2021-07-16 13:23 - 2021-07-16 18:52 - 000000000 ____D C:\Users\samue\Desktop\anniv e 2021-07-15 17:35 - 2021-07-15 17:35 - 001823280 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2021-07-15 17:35 - 2021-07-15 17:35 - 000011357 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2021-07-15 17:35 - 2021-07-15 17:35 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsraLegacy.tlb 2021-07-15 17:35 - 2021-07-15 17:35 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsraLegacy.tlb 2021-07-15 17:35 - 2021-07-15 17:35 - 000006656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rendezvousSession.tlb 2021-07-15 17:35 - 2021-07-15 17:35 - 000006656 _____ (Microsoft Corporation) C:\WINDOWS\system32\rendezvousSession.tlb 2021-07-14 22:14 - 2021-07-14 22:14 - 001114354 _____ C:\Users\samue\Desktop\watch.htm 2021-07-14 21:23 - 2021-07-16 17:56 - 000000000 ____D C:\Users\samue\AppData\Roaming\VEGAS 2021-07-14 21:23 - 2021-07-14 21:23 - 000000000 ____D C:\Users\samue\AppData\Roaming\VEGAS Pro 2021-07-14 21:23 - 2021-07-14 21:23 - 000000000 ____D C:\Users\samue\AppData\Roaming\MAGIX 2021-07-14 21:23 - 2021-07-14 21:23 - 000000000 ____D C:\Users\samue\AppData\Local\VEGAS Pro 2021-07-14 21:23 - 2021-07-14 21:23 - 000000000 ____D C:\Users\samue\AppData\Local\Sony 2021-07-14 21:23 - 2021-07-14 21:23 - 000000000 ____D C:\Users\samue\AppData\Local\Plugin.OfxStitch 2021-07-14 21:23 - 2021-07-14 21:23 - 000000000 ____D C:\Users\samue\AppData\Local\Plugin.ofx360Stabilizer 2021-07-14 21:23 - 2021-07-14 21:23 - 000000000 ____D C:\Users\samue\AppData\Local\Plugin.MxOfxRotation 2021-07-14 21:23 - 2021-07-14 21:23 - 000000000 ____D C:\Users\samue\AppData\Local\MAGIX 2021-07-14 21:21 - 2021-07-14 21:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VEGAS 2021-07-14 21:21 - 2021-07-14 21:21 - 000000000 ____D C:\ProgramData\Magix 2021-07-14 21:20 - 2021-07-14 21:20 - 000000000 ____D C:\Users\samue\AppData\Roaming\Sony 2021-07-14 21:20 - 2021-07-14 21:20 - 000000000 ____D C:\Users\samue\AppData\Local\VEGAS 2021-07-14 21:20 - 2021-07-14 21:20 - 000000000 ____D C:\ProgramData\VEGAS Pro 2021-07-14 21:20 - 2021-07-14 21:20 - 000000000 ____D C:\ProgramData\VEGAS 2021-07-14 21:20 - 2021-07-14 21:20 - 000000000 ____D C:\Program Files\VEGAS 2021-07-14 21:20 - 2021-07-14 21:20 - 000000000 ____D C:\Program Files (x86)\VEGAS 2021-07-14 21:13 - 2021-07-14 21:13 - 000000000 ____D C:\Users\samue\Desktop\MAGIX VEGAS Pro v18.0.0.482 (x64) 2021-07-09 23:59 - 2021-07-09 23:59 - 000002031 _____ C:\Users\samue\Desktop\Screen steam.lnk 2021-07-07 13:30 - 2021-07-07 13:30 - 002371072 _____ C:\WINDOWS\system32\rdpnano.dll 2021-07-07 13:30 - 2021-07-07 13:30 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll 2021-07-07 13:30 - 2021-07-07 13:30 - 001393504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2021-07-07 13:30 - 2021-07-07 13:30 - 001314128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2021-07-07 13:30 - 2021-07-07 13:30 - 000570880 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2021-07-07 13:30 - 2021-07-07 13:30 - 000452608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2021-07-07 13:30 - 2021-07-07 13:30 - 000097792 _____ C:\WINDOWS\system32\Drivers\cimfs.sys 2021-07-07 13:30 - 2021-07-07 13:30 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl 2021-07-07 13:30 - 2021-07-07 13:30 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl 2021-07-07 13:30 - 2021-07-07 13:30 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe 2021-07-05 22:40 - 2021-07-05 22:40 - 000000000 ____D C:\Users\samue\AppData\Roaming\Cybelsoft 2021-07-05 22:40 - 2021-07-05 22:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriversCloud.com 2021-07-05 22:40 - 2021-07-05 22:40 - 000000000 ____D C:\Program Files\Cybelsoft 2021-07-03 12:02 - 2021-07-11 14:25 - 001065032 _____ C:\Users\samue\Desktop\Attestation Abonnement.PDF 2021-07-01 14:01 - 2021-07-01 14:01 - 000000650 _____ C:\Users\Public\Desktop\Logitech G HUB.lnk 2021-07-01 14:01 - 2021-07-01 14:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi 2021-07-01 14:01 - 2021-07-01 14:01 - 000000000 ____D C:\Program Files\LGHUB 2021-06-26 19:33 - 2021-07-11 23:23 - 000000000 ____D C:\Users\samue\AppData\Roaming\obs-studio 2021-06-26 19:33 - 2021-06-26 19:33 - 000001062 _____ C:\Users\Public\Desktop\OBS Studio.lnk 2021-06-26 19:33 - 2021-06-26 19:33 - 000000000 ____D C:\ProgramData\obs-studio-hook 2021-06-26 19:33 - 2021-06-26 19:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OBS Studio 2021-06-26 19:33 - 2021-06-26 19:33 - 000000000 ____D C:\Program Files\obs-studio 2021-06-26 12:05 - 2021-06-26 12:05 - 000000000 ____D C:\WINDOWS\ShellNew 2021-06-26 12:05 - 2021-06-26 12:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoHotkey 2021-06-26 12:05 - 2021-06-26 12:05 - 000000000 ____D C:\Program Files\AutoHotkey 2021-06-26 11:49 - 2021-07-16 12:44 - 000000000 ____D C:\Users\samue\AppData\Roaming\LGHUB 2021-06-26 11:49 - 2021-07-16 12:44 - 000000000 ____D C:\Users\samue\AppData\Local\LGHUB 2021-06-26 11:49 - 2021-06-26 11:49 - 000000000 ____D C:\ProgramData\Logishrd 2021-06-26 11:48 - 2021-06-26 11:48 - 000066896 _____ (Logitech) C:\WINDOWS\system32\Drivers\logi_joy_xlcore.sys 2021-06-26 11:48 - 2021-06-26 11:48 - 000037200 _____ (Logitech) C:\WINDOWS\system32\Drivers\logi_joy_bus_enum.sys 2021-06-26 11:48 - 2021-06-26 11:48 - 000025928 _____ (Logitech) C:\WINDOWS\system32\Drivers\logi_joy_vir_hid.sys 2021-06-26 11:47 - 2021-06-26 11:49 - 000000000 ____D C:\ProgramData\LGHUB 2021-06-26 09:43 - 2021-06-26 09:43 - 000000087 _____ C:\Users\samue\Desktop\docs.google.com.url 2021-06-23 13:15 - 2021-06-23 13:15 - 000000701 _____ C:\Users\Public\Desktop\Car Mechanic Simulator 2018.lnk 2021-06-23 13:15 - 2021-06-23 13:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Car Mechanic Simulator 2018 2021-06-23 10:52 - 2021-06-23 13:17 - 000000000 ____D C:\Users\samue\AppData\LocalLow\Red Dot Games 2021-06-22 14:12 - 2021-06-22 14:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Les Sims 3 2021-06-22 14:12 - 2015-04-14 16:09 - 000447752 _____ (On2.com) C:\WINDOWS\SysWOW64\vp6vfw.dll 2021-06-22 13:34 - 2021-06-22 13:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield Bad Company 2 2021-06-22 13:33 - 2021-06-22 13:33 - 002434856 _____ C:\WINDOWS\SysWOW64\pbsvc.exe 2021-06-22 11:33 - 2021-06-22 22:42 - 000215128 _____ C:\WINDOWS\SysWOW64\PnkBstrB.xtr 2021-06-22 11:33 - 2021-06-22 11:33 - 002434856 _____ C:\WINDOWS\SysWOW64\pbsvc_bc2.exe 2021-06-22 09:32 - 2021-06-22 09:32 - 000000000 ____D C:\WINDOWS\system32\Tasks\Agent Activation Runtime 2021-06-21 10:33 - 2021-06-21 10:33 - 000000073 _____ C:\Users\samue\Desktop\(157) Webmail Free -- Boîte de réception.url 2021-06-20 16:24 - 2021-06-20 16:24 - 000076152 _____ C:\WINDOWS\system32\PnkBstrA.exe 2021-06-20 16:14 - 2021-06-20 16:14 - 000000000 ____D C:\Users\samue\AppData\Local\PunkBuster 2021-06-20 13:39 - 2021-07-18 22:50 - 000000000 ____D C:\Users\samue\AppData\Roaming\ZHP 2021-06-20 13:39 - 2021-06-20 13:53 - 000000000 ____D C:\Users\samue\AppData\Local\ZHP 2021-06-20 11:29 - 2021-07-16 12:44 - 000000000 ____D C:\Program Files (x86)\Origin Games 2021-06-20 10:59 - 2021-06-20 10:59 - 000000587 _____ C:\Users\Public\Desktop\Origin.lnk 2021-06-20 10:59 - 2021-06-20 10:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin 2021-06-20 10:56 - 2021-07-16 12:44 - 000000000 ____D C:\Users\samue\AppData\Roaming\Origin 2021-06-20 10:56 - 2021-07-16 12:44 - 000000000 ____D C:\Users\samue\AppData\Local\Origin 2021-06-20 01:11 - 2021-06-20 01:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 4 2021-06-20 01:11 - 2021-06-20 01:11 - 000000000 ____D C:\Program Files (x86)\Battlelog Web Plugins 2021-06-20 01:10 - 2021-06-22 22:42 - 000215128 _____ C:\WINDOWS\SysWOW64\PnkBstrB.exe 2021-06-20 01:10 - 2021-06-22 13:33 - 000075064 _____ C:\WINDOWS\SysWOW64\PnkBstrA.exe 2021-06-20 01:10 - 2021-06-22 11:17 - 000226168 _____ C:\WINDOWS\SysWOW64\PnkBstrB.ex0 2021-06-18 22:55 - 2021-06-18 22:55 - 000000000 ____D C:\Users\samue\AppData\LocalLow\Hasbro, Inc_ 2021-06-18 22:47 - 2021-06-18 22:47 - 000000223 _____ C:\Users\samue\Desktop\RISK Global Domination.url ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-07-18 22:49 - 2021-02-16 12:50 - 000000000 ____D C:\Program Files (x86)\Steam 2021-07-18 22:44 - 2021-01-22 01:46 - 000000000 ____D C:\Users\samue\AppData\Roaming\discord 2021-07-18 22:44 - 2021-01-22 01:46 - 000000000 ____D C:\Users\samue\AppData\Local\Discord 2021-07-18 22:42 - 2021-01-22 03:08 - 000000000 ____D C:\Program Files\CCleaner 2021-07-18 22:32 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-07-18 21:56 - 2021-01-23 09:53 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2021-07-18 21:55 - 2021-01-22 01:26 - 000000000 ____D C:\Program Files (x86)\Google 2021-07-18 21:10 - 2021-01-23 09:58 - 000004172 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{9E4AE627-0F4A-4493-847A-AE49DA518BE4} 2021-07-18 17:36 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2021-07-18 17:24 - 2021-02-06 17:55 - 000000000 ____D C:\Users\samue\AppData\Local\Apple Computer 2021-07-18 17:24 - 2021-01-25 21:03 - 000000000 ____D C:\ProgramData\Apple 2021-07-18 17:24 - 2021-01-22 01:20 - 000000000 ____D C:\ProgramData\Packages 2021-07-18 17:24 - 2021-01-22 01:18 - 000000000 ____D C:\Users\samue\AppData\Local\PlaceholderTileLogoFolder 2021-07-18 17:24 - 2021-01-22 01:16 - 000000000 ____D C:\Users\samue\AppData\Local\Publishers 2021-07-18 17:24 - 2021-01-22 01:16 - 000000000 ____D C:\Users\samue\AppData\Local\Packages 2021-07-18 17:22 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2021-07-18 15:09 - 2021-01-25 21:03 - 000000000 ____D C:\Users\samue\AppData\Roaming\HDMI 2021-07-18 15:09 - 2021-01-22 02:05 - 000000000 ____D C:\Users\samue\AppData\Local\Battle.net 2021-07-18 15:09 - 2021-01-22 02:04 - 000000000 ____D C:\Program Files (x86)\Battle.net 2021-07-18 12:25 - 2021-01-22 01:26 - 000000000 ____D C:\ProgramData\NVIDIA 2021-07-16 22:50 - 2021-01-22 01:13 - 000002452 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-07-16 20:10 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Registration 2021-07-16 18:51 - 2021-01-29 17:55 - 000000000 ____D C:\Users\samue\AppData\Roaming\vlc 2021-07-16 13:17 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF 2021-07-16 12:50 - 2021-01-23 10:02 - 001771346 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2021-07-16 12:50 - 2019-12-07 16:50 - 000791866 _____ C:\WINDOWS\system32\perfh00C.dat 2021-07-16 12:50 - 2019-12-07 16:50 - 000150032 _____ C:\WINDOWS\system32\perfc00C.dat 2021-07-16 12:49 - 2021-01-23 09:58 - 000003588 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2021-07-16 12:49 - 2021-01-23 09:58 - 000003464 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2021-07-16 12:44 - 2021-02-20 23:45 - 000000000 ____D C:\ProgramData\Origin 2021-07-16 12:44 - 2021-01-24 00:30 - 000002178 _____ C:\Users\samue\Desktop\CurseForge.lnk 2021-07-16 12:44 - 2021-01-24 00:28 - 000000000 ____D C:\Users\samue\AppData\Local\Overwolf 2021-07-16 12:43 - 2021-01-23 09:58 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2021-07-16 12:43 - 2021-01-23 09:53 - 000008192 ___SH C:\DumpStack.log.tmp 2021-07-15 19:10 - 2021-01-22 02:42 - 000002146 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2021-07-15 18:57 - 2021-01-23 09:53 - 000537272 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2021-07-15 18:57 - 2019-12-07 11:03 - 001572864 _____ C:\WINDOWS\system32\config\BBI 2021-07-15 18:56 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2021-07-15 18:56 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources 2021-07-15 18:56 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2021-07-15 18:56 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2021-07-15 18:56 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System 2021-07-15 17:37 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2021-07-15 17:31 - 2021-01-23 02:23 - 000000000 ____D C:\WINDOWS\system32\MRT 2021-07-15 17:29 - 2021-01-23 02:23 - 133422552 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2021-07-14 22:52 - 2021-04-05 18:16 - 000000000 ____D C:\Users\samue\AppData\Local\FiveM 2021-07-14 22:43 - 2021-01-22 02:44 - 000000000 ____D C:\Users\samue\AppData\Local\CrashDumps 2021-07-14 22:42 - 2021-01-24 00:32 - 000000000 ____D C:\Users\samue\AppData\Roaming\FileZilla 2021-07-14 22:26 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\NDF 2021-07-14 21:26 - 2021-01-22 01:26 - 000000000 ____D C:\Users\samue\AppData\Local\NVIDIA 2021-07-14 21:23 - 2021-01-22 01:54 - 000000000 ____D C:\Users\samue\AppData\Local\D3DSCache 2021-07-13 17:01 - 2021-02-14 12:44 - 000000000 ____D C:\Users\samue\AppData\Local\ElevatedDiagnostics 2021-07-10 23:23 - 2021-01-23 09:58 - 000003374 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-343162563-269056937-406375262-1001 2021-07-10 23:23 - 2021-01-23 09:54 - 000002423 _____ C:\Users\samue\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-07-10 23:23 - 2021-01-22 01:18 - 000000000 ___RD C:\Users\samue\OneDrive 2021-07-09 22:25 - 2021-01-22 01:10 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2021-07-08 14:15 - 2021-01-24 00:30 - 000000000 ____D C:\Program Files (x86)\Overwolf 2021-07-08 01:19 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2021-07-08 01:19 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2021-07-08 01:19 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2021-07-08 01:19 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2021-07-08 01:19 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup 2021-07-08 01:19 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2021-07-08 01:19 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2021-07-08 01:19 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning 2021-07-08 01:19 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2021-07-06 21:09 - 2021-04-07 20:57 - 000000000 ____D C:\ProgramData\CanonIJPLM 2021-07-05 22:58 - 2021-01-23 09:58 - 000004308 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-07-05 22:58 - 2021-01-23 09:58 - 000004106 _____ C:\WINDOWS\system32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-07-05 22:58 - 2021-01-23 09:58 - 000003976 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-07-05 22:58 - 2021-01-23 09:58 - 000003940 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-07-05 22:58 - 2021-01-23 09:58 - 000003894 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-07-05 22:58 - 2021-01-23 09:58 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-07-05 22:58 - 2021-01-23 09:58 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-07-05 22:58 - 2021-01-23 09:58 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-07-05 22:58 - 2021-01-23 09:58 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-07-05 22:58 - 2021-01-23 09:58 - 000003654 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-07-05 22:58 - 2021-01-22 01:26 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2021-07-05 22:58 - 2021-01-22 01:19 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2021-07-05 22:58 - 2021-01-22 01:19 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2021-07-05 22:40 - 2021-01-23 14:19 - 000001196 _____ C:\Users\Public\Desktop\DriversCloud.com - Démarrer la détection.lnk 2021-07-05 22:40 - 2021-01-23 14:19 - 000000000 ____D C:\ProgramData\DriversCloud.com 2021-07-02 20:50 - 2021-01-22 01:27 - 000002255 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2021-07-02 20:50 - 2021-01-22 01:27 - 000002214 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2021-06-26 20:19 - 2021-02-12 16:26 - 000002370 _____ C:\Users\samue\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk 2021-06-26 20:19 - 2021-02-12 16:26 - 000002362 _____ C:\Users\samue\Desktop\Microsoft Teams.lnk 2021-06-26 09:02 - 2021-02-05 23:03 - 000003540 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d6f15d75d7974f 2021-06-26 09:02 - 2021-01-23 09:58 - 000003634 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-06-25 10:00 - 2021-01-23 09:54 - 000000000 ____D C:\Users\samue 2021-06-22 22:58 - 2021-02-16 12:57 - 000000000 ____D C:\Users\samue\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2021-06-22 18:55 - 2021-01-23 09:58 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2021-06-22 13:21 - 2021-02-20 14:29 - 000000000 ____D C:\Users\samue\AppData\Local\Ubisoft Game Launcher 2021-06-20 02:30 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2021-06-20 01:10 - 2021-01-22 01:24 - 000000000 ____D C:\ProgramData\Package Cache 2021-06-19 21:23 - 2021-02-25 12:46 - 000000000 ____D C:\Program Files\Common Files\PUBG 2021-06-19 21:15 - 2021-02-25 12:46 - 002729456 _____ (Wellbia.com Co., Ltd.) C:\WINDOWS\xhunter1.sys ==================== Fichiers à la racine de certains dossiers ======== 2021-05-07 20:28 - 2021-05-09 23:06 - 000000097 _____ () C:\Users\samue\AppData\Roaming\LauncherSettings_live.cfg 2021-05-07 20:00 - 2021-05-09 21:13 - 000016601 _____ () C:\Users\samue\AppData\Roaming\TheHunterSettings_live.bin ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================