Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 07-08-2021 Exécuté par Robin (administrateur) sur DESKTOP-F3TPM84 (Dell Inc. OptiPlex 7010) (07-08-2021 16:13:12) Exécuté depuis C:\Users\Robin\Downloads Profils chargés: Robin Platform: Windows 10 Pro Version 20H2 19042.1083 (X64) Langue: Français (France) Navigateur par défaut: Brave Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Adobe Inc. -> Adobe Inc) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe <2> (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe (Adobe Systems Incorporated) C:\Program Files\WindowsApps\ReaderNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AXSP\4.00.42\atkexComSvc.exe (AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe (Brave Software, Inc. -> Brave Software, Inc.) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe <12> (Charles Milette) C:\Program Files\WindowsApps\28017CharlesMilette.TranslucentTB_9.0.0.0_x86__v826wp6bftszj\TranslucentTB\TranslucentTB.exe (Corsair Memory, Inc. -> Corsair Memory, Inc.) D:\Programmes (x86)\Corsair\Corsair.Service.CpuIdRemote64.exe (Corsair Memory, Inc. -> Corsair Memory, Inc.) D:\Programmes (x86)\Corsair\Corsair.Service.DisplayAdapter.exe (Corsair Memory, Inc. -> Corsair Memory, Inc.) D:\Programmes (x86)\Corsair\Corsair.Service.exe (Corsair Memory, Inc. -> Corsair Memory, Inc.) D:\Programmes (x86)\Corsair\CorsairMsiPluginService.exe (Corsair Memory, Inc. -> Corsair Memory, Inc.) D:\Programmes (x86)\Corsair\CueLLAccessService.exe (Corsair Memory, Inc. -> Corsair Memory, Inc.) D:\Programmes (x86)\Corsair\iCUE.exe (Discord Inc. -> Discord Inc.) C:\Users\Robin\AppData\Local\Discord\app-1.0.9002\Discord.exe <6> (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub.exe <3> (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) C:\Windows\System32\CorsairGamingAudioCfgService64.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\NisSrv.exe (Node.js Foundation -> Node.js) C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\libs\node.exe (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_b1d015fb0590e821\Display.NvContainer\NVDisplay.Container.exe <2> (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.) C:\Program Files\Realtek\Audio\HDA\RtDCpl64.exe (Riot Games, Inc. -> Riot Games, Inc.) C:\Program Files\Riot Vanguard\vgtray.exe (Spotify AB -> Spotify Ltd) C:\Users\Robin\AppData\Roaming\Spotify\Spotify.exe <5> ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtDCpl64.exe [2917496 2021-02-13] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.) HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM\...\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [3086208 2021-06-22] (Riot Games, Inc. -> Riot Games, Inc.) HKLM\...\Run: [CORSAIR iCUE 4 Software] => D:\Programmes (x86)\Corsair\iCUE Launcher.exe [321184 2021-05-07] (Corsair Memory, Inc. -> Corsair Memory, Inc.) HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [41360 2015-09-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) HKLM-x32\...\Run: [Nero BackItUp] => C:\Program Files (x86)\Nero\Nero 2019\Nero BackItup\BackItUp.exe [1170712 2018-08-07] (Nero AG -> Nero AG) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [706288 2021-04-09] (Oracle America, Inc. -> Oracle Corporation) HKLM\...\Policies\Explorer: [NoInternetOpenWith] 1 HKLM\...\Policies\Explorer: [NoPublishingWizard] 1 HKU\S-1-5-21-2477676498-3396542693-1265174726-1002\...\Run: [Battle.net] => D:\Programmes (x86)\Battle.net\Battle.net.exe [1079184 2021-05-05] (Blizzard Entertainment, Inc. -> Blizzard Entertainment) HKU\S-1-5-21-2477676498-3396542693-1265174726-1002\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [29262520 2020-07-09] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-2477676498-3396542693-1265174726-1002\...\Run: [CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [144008 2019-10-22] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-21-2477676498-3396542693-1265174726-1002\...\Run: [utweb] => C:\Users\Robin\AppData\Roaming\uTorrent Web\utweb.exe [5649952 2021-02-04] (BitTorrent Inc -> BitTorrent Inc.) HKU\S-1-5-21-2477676498-3396542693-1265174726-1002\...\Run: [Spotify] => C:\Users\Robin\AppData\Roaming\Spotify\Spotify.exe [24276096 2021-07-31] (Spotify AB -> Spotify Ltd) HKU\S-1-5-21-2477676498-3396542693-1265174726-1002\...\Run: [Adobe Reader Synchronizer] => C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe [5550304 2021-07-24] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-21-2477676498-3396542693-1265174726-1002\...\Run: [Unified Remote V3] => C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe [3243784 2021-02-22] (Unified Intents AB -> Unified Intents AB) HKU\S-1-5-21-2477676498-3396542693-1265174726-1002\...\Run: [LGHUB] => C:\Program Files\LGHUB\lghub.exe [136443296 2021-07-31] (Logitech Inc -> Logitech, Inc.) HKU\S-1-5-21-2477676498-3396542693-1265174726-1002\...\Run: [Discord] => C:\Users\Robin\AppData\Local\Discord\Update.exe [1512104 2021-05-24] (Discord Inc. -> GitHub) HKU\S-1-5-21-2477676498-3396542693-1265174726-1002\...\Policies\Explorer: [NoInstrumentation] 1 HKU\S-1-5-21-2477676498-3396542693-1265174726-1002\...\Policies\Explorer: [NolowDiskSpaceChecks] 1 HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\windows\system32\AdobePDF.dll [55872 2015-09-24] (Adobe Systems, Incorporated -> Adobe Systems Inc) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\83.0.4103.97\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\80.1.3.115\Installer\chrmstp.exe [2020-02-11] (Brave Software, Inc.) [Fichier non signé] GroupPolicy: Restriction ? <==== ATTENTION Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {04D669AC-4782-4069-B15F-AC45B4E626F8} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [159368 2019-06-25] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {08799B26-2A1E-4737-B10D-4E6CC9266D93} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-07-09] (Piriform Software Ltd -> Piriform Software Ltd) Task: {1580B9A4-09FD-46B2-91F2-6AF776E588C6} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [24910520 2020-07-09] (Piriform Software Ltd -> Piriform Software Ltd) Task: {15A1A51D-1ADA-473A-9198-EBEABD27A3F2} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe [673816 2021-08-04] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {315B9A40-89B2-405D-8BDC-C3B019C223F1} - System32\Tasks\ASC_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe [3262928 2021-01-14] (IObit Information Technology -> IObit) Task: {3369152B-88DF-45D4-B0F5-9C1FFE2593CB} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {3410ACC5-C743-48BE-BBC9-331F20B2E5E6} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {47ED6430-F658-4613-8167-86A2F6756E05} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {4AB8F8FC-0822-4B37-8A93-DC11BC7B0D1A} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [903024 2021-05-04] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {4E618323-6BBD-442A-AC31-18A7F02A425B} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [645488 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {55713D4D-5334-4FE3-80D6-275FD3B85AA4} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3339120 2021-06-15] (NVIDIA Corporation -> NVIDIA Corporation) Task: {588D4219-F852-4912-8836-603851EA4451} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe [673816 2021-08-04] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {58B0B58D-F062-4F94-B4CC-DACD8FF7BAB0} - System32\Tasks\Nero\Nero Info => C:\Program Files (x86)\Common Files\Nero\Nero Info\NeroInfo.exe [7018264 2018-07-18] (Nero AG -> Nero AG) Task: {5A4FE689-B27B-4396-8D30-8794E7EEF50D} - System32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-F3TPM84-Robin => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated) Task: {5C533EF0-9400-4E97-A4A0-E286186029B1} - System32\Tasks\Driver Booster Scheduler => C:\Program Files (x86)\IObit\Driver Booster\8.3.0\Scheduler.exe [152848 2020-12-23] (IObit Information Technology -> IObit) Task: {5F1D981A-4BBC-4BA7-B903-0130B69BC2BC} - System32\Tasks\SmartGameBooster Update => C:\Program Files (x86)\PCGameBoost\Smart Game Booster\4.5.0\SgbUpdater.exe [2692152 2020-06-28] (Chengdu Zhagu Technology Co., Ltd. -> Smart Game Booster) Task: {62DF1488-3F6D-4B77-BA66-EBBDCDBC0229} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905072 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {651468BD-4C71-4A6B-82F0-AFEDFF4168DF} - System32\Tasks\Overwolf Updater Task => D:\Programmes (x86)\Overwolf\OverwolfUpdater.exe [2476376 2021-07-21] (Overwolf Ltd -> Overwolf LTD) Task: {6F8F4291-B6E5-4A4D-BD46-9E2CCF216B40} - System32\Tasks\ASC_SkipUac_Robin => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe [9428936 2021-01-27] (IObit Information Technology -> IObit) Task: {792E103C-C38C-4235-B746-BB85A9D6F6B3} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [159368 2019-06-25] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {7BCDAA7D-E601-4BFC-8370-83F31EFB4720} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe [673816 2021-08-04] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {7C6D6FDC-5DA2-40E9-907C-46CCE9C7C5CE} - System32\Tasks\Driver Booster Update => C:\Program Files (x86)\IObit\Driver Booster\8.3.0\AutoUpdate.exe [2268432 2020-12-23] (IObit Information Technology -> IObit) Task: {7F7D9E5F-6923-4C21-A523-63B0A4FE2018} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {816ACB5B-A506-440E-A642-EB4FEE921DCC} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.) Task: {B7277E0A-3B82-45D7-9894-7CAB18AEB0E8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe [673816 2021-08-04] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {BCAE1624-2377-46ED-A331-507F6D4FDDEF} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905072 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {DED4ADB3-BC69-42DB-B228-EC8ED6A13FC1} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [903024 2021-05-04] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log Task: {EE4E0951-2D70-4F8A-A658-323B9BAD0515} - System32\Tasks\SmartGameBooster SkipUAC (Robin) => C:\Program Files (x86)\PCGameBoost\Smart Game Booster\4.5.0\SgbMain.exe [3505208 2020-07-14] (Chengdu Zhagu Technology Co., Ltd. -> Smart Game Booster) Task: {F1C0A892-4AAB-4AF8-AB7D-CBB0EDE759D8} - System32\Tasks\Driver Booster SkipUAC (Robin) => C:\Program Files (x86)\IObit\Driver Booster\8.3.0\DriverBooster.exe [8152016 2021-02-01] (IObit Information Technology -> IObit) Task: {F5108A96-A74B-4D0E-A122-FAB4626BAABF} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{68a81daa-4704-407b-8e9d-cca10b4634c5}: [NameServer] 8.8.8.8,8.8.4.4 Tcpip\..\Interfaces\{68a81daa-4704-407b-8e9d-cca10b4634c5}: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{b42e13f0-4de1-4751-b9c7-dda96b3675a4}: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{c9216447-c6bf-4033-9f20-c9c169eeb70b}: [DhcpNameServer] 192.168.42.129 Edge: ======= Edge HomeButtonPage: HKU\S-1-5-21-2477676498-3396542693-1265174726-1002 -> hxxp://www.qo-pro.com/ Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)] Edge Extension: (Pas de nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [non trouvé(e)] Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)] Edge Extension: (Pas de nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [non trouvé(e)] Edge Profile: C:\Users\Robin\AppData\Local\Microsoft\Edge\User Data\Default [2021-08-07] Edge HomePage: Default -> hxxp://www.qo-pro.com/ Edge StartupUrls: Default -> "hxxp://www.qo-pro.com/" Edge DefaultSearchURL: Default -> {bing:baseURL}search?q={searchTerms}&{bing:cvid}{google:assistedQueryStats} FireFox: ======== FF DefaultProfile: 9kilrkkb.default FF ProfilePath: C:\Users\Robin\AppData\Roaming\Mozilla\Firefox\Profiles\9kilrkkb.default [2021-02-13] FF user.js: detected! => C:\Users\Robin\AppData\Roaming\Mozilla\Firefox\Profiles\9kilrkkb.default\user.js [2021-07-12] FF Extension: (IObit Surfing Protection & Ads Removal) - C:\Users\Robin\AppData\Roaming\Mozilla\Firefox\Profiles\9kilrkkb.default\Extensions\ascsurfingprotectionnew@iobit.com.xpi [2020-07-28] FF ProfilePath: C:\Users\Robin\AppData\Roaming\Mozilla\Firefox\Profiles\o2i3ga69.default-release [2021-08-07] FF user.js: detected! => C:\Users\Robin\AppData\Roaming\Mozilla\Firefox\Profiles\o2i3ga69.default-release\user.js [2021-07-12] FF Extension: (IObit Surfing Protection & Ads Removal) - C:\Users\Robin\AppData\Roaming\Mozilla\Firefox\Profiles\o2i3ga69.default-release\Extensions\ascsurfingprotectionnew@iobit.com.xpi [2020-07-28] FF Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\Robin\AppData\Roaming\Mozilla\Firefox\Profiles\o2i3ga69.default-release\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2021-01-08] FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn FF Extension: (Adobe Acrobat - Create PDF) - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2019-06-25] [] [non signé] FF Plugin: 3ds.com/ComposerPlayerWebPlugin_x86_64 -> D:\Programmes (x86)\SolidWorks 2020-2021\SOLIDWORKS Composer Player\Bin\npcomposerplayerwebplugin.dll [2020-05-08] (DASSAULT SYSTEMES SE -> Dassault Systemes) FF Plugin: @java.com/DTPlugin,version=11.291.2 -> C:\Program Files\Java\jre1.8.0_291\bin\dtplugin\npDeployJava1.dll [2021-05-29] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.291.2 -> C:\Program Files\Java\jre1.8.0_291\bin\plugin2\npjp2.dll [2021-05-29] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\Win64Plugin\npAdobeExManDetectX64.dll [2013-12-02] (Adobe Systems Incorporated -> Adobe Systems) FF Plugin-x32: 3ds.com/ComposerPlayerWebPlugin -> D:\Programmes (x86)\SolidWorks 2020-2021\SOLIDWORKS Composer Player\Bin\x86\npcomposerplayerwebplugin.dll [2020-05-08] (DASSAULT SYSTEMES SE -> Dassault Systemes) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @tools.brave.com/BraveSoftware Update;version=3 -> C:\Program Files (x86)\BraveSoftware\Update\1.3.99.0\npBraveUpdate3.dll [2019-06-25] (Brave Software, Inc. -> BraveSoftware Inc.) FF Plugin-x32: @tools.brave.com/BraveSoftware Update;version=9 -> C:\Program Files (x86)\BraveSoftware\Update\1.3.99.0\npBraveUpdate3.dll [2019-06-25] (Brave Software, Inc. -> BraveSoftware Inc.) FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll [2015-09-24] (Adobe Systems, Incorporated -> Adobe Systems Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-07-24] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll [2013-12-02] (Adobe Systems Incorporated -> Adobe Systems) Chrome: ======= CHR Profile: C:\Users\Robin\AppData\Local\Google\Chrome\User Data\Default [2020-07-16] CHR StartupUrls: Default -> "hxxps://www.google.com/" CHR Extension: (Slides) - C:\Users\Robin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-06-13] Brave: ======= BRA DefaultProfile: Tor Profile BRA Profile: C:\Users\Robin\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2021-08-07] BRA Notifications: Default -> hxxps://0.retoore0.biz; hxxps://0.toobotnews.biz; hxxps://1.toobotnews.biz; hxxps://3.retoore0.biz; hxxps://4.retoore0.biz; hxxps://51.flamborius.com; hxxps://aternos.org; hxxps://maranhesduve.club; hxxps://www.facebook.com; hxxps://www.op.gg; hxxps://www.youtube.com; hxxps://www1a.debrahinton.pro; hxxps://www1a.delmarmora.pro; hxxps://www1a.samcunningham.pro; hxxps://www92.eloypatrick.pro BRA HomePage: Default -> hxxp://www.google.fr/ BRA DefaultSearchKeyword: Default -> :g BRA Extension: (Google Traduction) - C:\Users\Robin\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2020-07-19] BRA Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\Robin\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2021-07-31] BRA Extension: (wanteeed) - C:\Users\Robin\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\emnoomldgleagdjapdeckpmebokijail [2021-07-31] BRA Extension: (Instant Gaming) - C:\Users\Robin\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\lbnoedlobifdhbpjkcfhcbdcjhampmne [2021-05-12] BRA Extension: (Brave Local Data Files Updater) - C:\Users\Robin\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2021-07-31] BRA Extension: (Brave Ad Block Updater (Default)) - C:\Users\Robin\AppData\Local\BraveSoftware\Brave-Browser\User Data\cffkpbalmllkdoenhmdmpbkajipdjfam [2021-08-07] BRA Extension: (Brave Tor Client Updater (Windows)) - C:\Users\Robin\AppData\Local\BraveSoftware\Brave-Browser\User Data\cpoalefficncklhjfpglfiplenlpccdb [2021-06-17] BRA Extension: (Brave NTP sponsored images) - C:\Users\Robin\AppData\Local\BraveSoftware\Brave-Browser\User Data\lcenblphbmngnohghkhpojmpflebkcpd [2021-08-07] BRA Extension: (PDF Viewer) - C:\Users\Robin\AppData\Local\BraveSoftware\Brave-Browser\User Data\oemmndcbldboiebfnladdacbdfmadadm [2019-06-25] BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\Robin\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2021-08-07] StartMenuInternet: Brave - C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.) S2 AdvancedSystemCareService14; C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe [1288976 2020-12-24] (IObit Information Technology -> IObit) S3 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3147344 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated) S3 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2914896 2019-10-08] (Adobe Inc. -> Adobe Systems, Incorporated) R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\4.00.42\atkexComSvc.exe [442416 2019-09-03] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8901968 2021-05-02] (BattlEye Innovations e.K. -> ) S3 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [159368 2019-06-25] (Brave Software, Inc. -> BraveSoftware Inc.) S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [159368 2019-06-25] (Brave Software, Inc. -> BraveSoftware Inc.) S3 CoordinatorServiceHost; D:\Programmes (x86)\SolidWorks 2020-2021\SOLIDWORKS\swScheduler\DTSCoordinatorService.exe [79360 2020-05-08] (Dassault Systemes SolidWorks Corp. -> Dassault Systèmes SolidWorks Corporation) R2 CorsairGamingAudioConfig; C:\WINDOWS\system32\CorsairGamingAudioCfgService64.exe [616360 2021-04-07] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) R2 CorsairLLAService; D:\Programmes (x86)\Corsair\CueLLAccessService.exe [456352 2021-05-07] (Corsair Memory, Inc. -> Corsair Memory, Inc.) R2 CorsairMsiPluginService; D:\Programmes (x86)\Corsair\CorsairMsiPluginService.exe [451744 2021-05-07] (Corsair Memory, Inc. -> Corsair Memory, Inc.) R2 CorsairService; D:\Programmes (x86)\Corsair\Corsair.Service.exe [80544 2021-05-07] (Corsair Memory, Inc. -> Corsair Memory, Inc.) R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4506728 2020-02-06] (AVB Disc Soft, SIA -> Disc Soft Ltd) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [803440 2021-01-07] (EasyAntiCheat Oy -> EasyAntiCheat Ltd) S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [926176 2021-03-16] (Epic Games Inc. -> Epic Games, Inc.) R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [10787232 2021-07-31] (Logitech Inc -> Logitech, Inc.) S3 NeroBackItUpBackgroundService2019; C:\Program Files (x86)\Nero\Nero 2019\Nero BackItUp\NBService.exe [287000 2018-08-07] (Nero AG -> Nero AG) S3 Origin Client Service; D:\Programmes (x86)\Origin\OriginClientService.exe [2556048 2021-07-03] (Electronic Arts, Inc. -> Electronic Arts) S2 Origin Web Helper Service; D:\Programmes (x86)\Origin\OriginWebHelperService.exe [3474584 2021-07-03] (Electronic Arts, Inc. -> Electronic Arts) S3 OverwolfUpdater; D:\Programmes (x86)\Overwolf\OverwolfUpdater.exe [2476376 2021-07-21] (Overwolf Ltd -> Overwolf LTD) S3 Rockstar Service; D:\Programmes (x86)\Launcher\RockstarService.exe [1934744 2021-07-09] (Rockstar Games, Inc. -> Rockstar Games) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5394864 2021-07-09] (Microsoft Windows Publisher -> Microsoft Corporation) S3 SolidWorks Licensing Service; C:\Program Files (x86)\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe [79360 2020-09-22] (SolidWorks) [Fichier non signé] S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [Fichier non signé] S3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [10147296 2021-06-22] (Riot Games, Inc. -> Riot Games, Inc.) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\NisSrv.exe [2727416 2021-08-04] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MsMpEng.exe [136656 2021-08-04] (Microsoft Windows Publisher -> Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvmdi.inf_amd64_b1d015fb0590e821\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvmdi.inf_amd64_b1d015fb0590e821\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35560 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.) R1 Asusgio2; C:\WINDOWS\system32\drivers\AsIO2.sys [33832 2019-04-09] (ASUSTeK Computer Inc. -> ) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Fichier non signé] S3 CH341SER_A64; C:\WINDOWS\System32\Drivers\CH341S64.SYS [69024 2019-05-29] (Microsoft Windows Hardware Compatibility Publisher -> www.winchiphead.com) R3 CorsairGamingAudioService; C:\WINDOWS\system32\DRIVERS\CorsairGamingAudio64.sys [60328 2021-04-07] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) R2 CorsairLLAccess3974380E09645A2D48CFA706AF798FB564E56182; D:\Programmes (x86)\Corsair\CorsairLLAccess64.sys [21752 2021-04-07] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) R3 CorsairVBusDriver; C:\WINDOWS\System32\drivers\CorsairVBusDriver.sys [45984 2021-04-07] (Microsoft Windows Hardware Compatibility Publisher -> Corsair) R3 CorsairVHidDriver; C:\WINDOWS\System32\drivers\CorsairVHidDriver.sys [21920 2021-04-07] (Microsoft Windows Hardware Compatibility Publisher -> Corsair) R3 cpuz145; C:\WINDOWS\temp\cpuz145\cpuz145_x64.sys [49968 2021-08-07] (CPUID -> CPUID) R3 cpuz150; C:\WINDOWS\temp\cpuz150\cpuz150_x64.sys [44832 2021-08-07] (CPUID S.A.R.L.U. -> CPUID) R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2020-02-06] (AVB Disc Soft, SIA -> Disc Soft Ltd) R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [59360 2020-02-06] (AVB Disc Soft, SIA -> Disc Soft Ltd) R1 HWiNFO32; C:\windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2020-02-11] (Martin Malik - REALiX -> REALiX(tm)) S3 iobit_monitor_server; C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\Monitor_win10_x64.sys [32520 2020-12-02] (IObit Information Technology -> IObit) R2 LGHUBTemperatureService; C:\Program Files\LGHUB\logi_core_temp.sys [22864 2021-07-31] (Logitech Inc -> Logitech) R3 logi_joy_bus_enum; C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys [37200 2021-05-27] (Logitech Inc -> Logitech) R3 logi_joy_vir_hid; C:\WINDOWS\system32\drivers\logi_joy_vir_hid.sys [25928 2021-05-27] (Logitech Inc -> Logitech) R3 logi_joy_xlcore; C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys [66896 2021-05-27] (Logitech Inc -> Logitech) S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [24000 2019-09-26] (MICRO-STAR INTERNATIONAL CO., LTD. -> ) R2 speedfan; C:\WINDOWS\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software) R3 uvhid; C:\WINDOWS\System32\drivers\uvhid.sys [28128 2020-04-21] (Unified Intents AB -> Windows (R) Win 7 DDK provider) R3 VBAudioVACMME; C:\WINDOWS\System32\drivers\vbaudio_cable64_win7.sys [41192 2014-09-02] (Vincent Burel -> Windows (R) Win 7 DDK provider) R1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [8241992 2021-06-22] (Riot Games, Inc. -> Riot Games, Inc.) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49568 2021-08-04] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [434424 2021-08-04] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [78072 2021-08-04] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-08-07 16:13 - 2021-08-07 16:14 - 000033834 _____ C:\Users\Robin\Downloads\FRST.txt 2021-08-07 16:12 - 2021-08-07 16:13 - 000000000 ____D C:\FRST 2021-08-07 16:12 - 2021-08-07 16:12 - 002300416 _____ (Farbar) C:\Users\Robin\Downloads\FRST64.exe 2021-08-07 14:12 - 2021-08-07 15:46 - 000000000 ____D C:\Users\Robin\AppData\Local\Discord 2021-08-07 14:12 - 2021-08-07 14:12 - 000002240 _____ C:\Users\Robin\Desktop\Discord.lnk 2021-08-05 22:10 - 2021-08-05 22:10 - 000111158 _____ C:\Users\Robin\Downloads\chrome_elf (3).zip 2021-07-31 19:07 - 2021-08-07 14:46 - 000000000 ____D C:\Users\Robin\AppData\Roaming\LGHUB 2021-07-31 19:07 - 2021-07-31 19:07 - 000000726 _____ C:\Users\Public\Desktop\Logitech G HUB.lnk 2021-07-31 19:07 - 2021-07-31 19:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi 2021-07-31 19:07 - 2021-07-31 19:07 - 000000000 ____D C:\Program Files\LGHUB 2021-07-31 19:06 - 2021-08-07 14:46 - 000000000 ____D C:\Users\Robin\AppData\Local\LGHUB 2021-07-31 19:06 - 2021-07-31 19:07 - 000000000 ____D C:\ProgramData\LGHUB 2021-07-31 19:06 - 2021-07-31 19:06 - 041268640 _____ (Logitech, Inc.) C:\Users\Robin\Downloads\lghub_installer.exe 2021-07-31 19:06 - 2021-07-31 19:06 - 000000000 ____D C:\Users\Robin\AppData\Roaming\LGHUB_BKP 2021-07-31 10:00 - 2021-07-31 10:00 - 000002143 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2021-07-31 09:58 - 2021-07-31 09:58 - 000174079 _____ C:\Users\Robin\Downloads\chrome_elf (2).zip 2021-07-31 09:56 - 2021-08-07 16:01 - 000000000 ____D C:\Users\Robin\AppData\Roaming\discord 2021-07-31 09:56 - 2021-07-31 09:56 - 070858912 _____ (Discord Inc.) C:\Users\Robin\Downloads\DiscordSetup.exe 2021-07-30 11:27 - 2021-07-30 11:27 - 009093036 _____ C:\Users\Robin\Downloads\Sonray_Pack.zip 2021-07-29 10:35 - 2021-07-29 10:35 - 000000021 _____ C:\Users\Robin\AppData\Local\Autosofted License.txt 2021-07-29 10:30 - 2021-07-31 10:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Actiona 2021-07-29 10:30 - 2021-07-31 10:48 - 000000000 ____D C:\Program Files\Actiona 2021-07-25 21:39 - 2021-07-25 21:39 - 000174079 _____ C:\Users\Robin\Downloads\chrome_elf (1).zip 2021-07-18 12:18 - 2021-07-18 12:18 - 000001671 _____ C:\Users\Robin\Desktop\RemoteServerWin.exe.lnk 2021-07-12 18:23 - 2021-07-12 18:23 - 001656135 _____ C:\Users\Robin\Downloads\Pokelandia.exe 2021-07-12 18:13 - 2021-07-12 18:13 - 038528635 _____ C:\Users\Robin\Downloads\Pixelax-Pack.zip 2021-07-12 18:12 - 2021-07-31 10:48 - 000000000 ____D C:\Users\Robin\AppData\Roaming\.PixelaxV3 2021-07-12 18:12 - 2021-07-12 18:12 - 000626301 _____ (Pixelax) C:\Users\Robin\Desktop\Pixelax-Launcher.exe 2021-07-12 15:18 - 2021-07-12 15:18 - 000174079 _____ C:\Users\Robin\Downloads\chrome_elf.zip 2021-07-12 11:57 - 2021-07-12 11:57 - 111792128 _____ C:\WINDOWS\system32\config\SOFTWARE.iobit 2021-07-12 11:57 - 2021-07-12 11:57 - 004562944 _____ C:\WINDOWS\system32\config\DRIVERS.iobit 2021-07-12 11:57 - 2021-07-12 11:57 - 000450560 _____ C:\WINDOWS\system32\config\DEFAULT.iobit 2021-07-12 11:57 - 2021-07-12 11:57 - 000040960 _____ C:\WINDOWS\system32\config\SECURITY.iobit 2021-07-12 11:57 - 2021-07-12 11:57 - 000040960 _____ C:\WINDOWS\system32\config\SAM.iobit 2021-07-09 11:29 - 2021-07-09 11:29 - 002371072 _____ C:\WINDOWS\system32\rdpnano.dll 2021-07-09 11:29 - 2021-07-09 11:29 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll 2021-07-09 11:29 - 2021-07-09 11:29 - 001823304 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2021-07-09 11:29 - 2021-07-09 11:29 - 001393504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2021-07-09 11:29 - 2021-07-09 11:29 - 001314128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2021-07-09 11:29 - 2021-07-09 11:29 - 000570880 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2021-07-09 11:29 - 2021-07-09 11:29 - 000452608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2021-07-09 11:29 - 2021-07-09 11:29 - 000097792 _____ C:\WINDOWS\system32\Drivers\cimfs.sys 2021-07-09 11:29 - 2021-07-09 11:29 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl 2021-07-09 11:29 - 2021-07-09 11:29 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl 2021-07-09 11:29 - 2021-07-09 11:29 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe 2021-07-09 11:29 - 2021-07-09 11:29 - 000011351 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-08-07 16:05 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2021-08-07 16:03 - 2019-07-01 09:31 - 000000000 ____D C:\Users\Robin\AppData\Local\CrashDumps 2021-08-07 16:02 - 2019-06-25 17:34 - 000000000 ____D C:\Users\Robin\AppData\Local\D3DSCache 2021-08-07 15:53 - 2020-03-27 21:26 - 000000000 ____D C:\Users\Robin\AppData\Roaming\.paladium 2021-08-07 15:43 - 2021-03-08 17:13 - 000000000 ____D C:\Users\Robin\AppData\Roaming\Spotify 2021-08-07 15:42 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2021-08-07 15:39 - 2021-03-08 17:13 - 000000000 ____D C:\Users\Robin\AppData\Local\Spotify 2021-08-07 15:39 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\registration 2021-08-07 14:54 - 2021-06-09 22:13 - 001770906 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2021-08-07 14:54 - 2019-12-07 16:50 - 000791718 _____ C:\WINDOWS\system32\perfh00C.dat 2021-08-07 14:54 - 2019-12-07 16:50 - 000149884 _____ C:\WINDOWS\system32\perfc00C.dat 2021-08-07 14:54 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF 2021-08-07 14:48 - 2020-12-04 22:17 - 000000000 ____D C:\Users\Robin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Overwolf 2021-08-07 14:48 - 2020-07-07 20:58 - 000000001 _____ C:\WINDOWS\vgkbootstatus.dat 2021-08-07 14:48 - 2020-02-11 19:49 - 000000000 ____D C:\Users\Robin\AppData\Roaming\IObit 2021-08-07 14:48 - 2020-02-11 19:49 - 000000000 ____D C:\ProgramData\ProductData 2021-08-07 14:48 - 2019-12-07 16:53 - 000000000 __SHD C:\WINDOWS\BitLockerDiscoveryVolumeContents 2021-08-07 14:48 - 2019-12-07 16:53 - 000000000 ___SD C:\WINDOWS\system32\AppV 2021-08-07 14:48 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files\Windows Portable Devices 2021-08-07 14:48 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2021-08-07 14:48 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files\Windows Multimedia Platform 2021-08-07 14:48 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2021-08-07 14:48 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files (x86)\Windows Portable Devices 2021-08-07 14:48 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2021-08-07 14:48 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files (x86)\Windows Multimedia Platform 2021-08-07 14:48 - 2019-12-07 16:51 - 000000000 ____D C:\WINDOWS\system32\OpenSSH 2021-08-07 14:48 - 2019-12-07 16:50 - 000000000 ____D C:\WINDOWS\SysWOW64\fr 2021-08-07 14:48 - 2019-12-07 16:50 - 000000000 ____D C:\WINDOWS\system32\fr 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\UNP 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\F12 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\dsc 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\PrintDialog 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\InstallShield 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\downlevel 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\migwiz 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\downlevel 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Com 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellComponents 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\IME 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2021-08-07 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System 2021-08-07 14:48 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing 2021-08-07 14:47 - 2020-02-06 09:24 - 000000000 ____D C:\ProgramData\DAEMON Tools Lite 2021-08-07 14:47 - 2019-11-22 18:05 - 000000000 ____D C:\ProgramData\NVIDIA 2021-08-07 14:45 - 2021-06-09 22:09 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2021-08-07 14:45 - 2021-06-09 22:01 - 000008192 ___SH C:\DumpStack.log.tmp 2021-08-07 14:45 - 2021-06-09 20:52 - 000000000 ____D C:\Users\Robin 2021-08-07 14:38 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI 2021-08-07 14:38 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\InputMethod 2021-08-07 14:38 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\IME 2021-08-07 14:37 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\MUI 2021-08-07 14:37 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\InputMethod 2021-08-07 14:37 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\IME 2021-08-07 14:36 - 2020-12-04 22:12 - 000000000 ____D C:\Users\Robin\AppData\Local\Overwolf 2021-08-07 14:36 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Containers 2021-08-07 14:36 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Branding 2021-08-07 14:36 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\appcompat 2021-08-07 14:36 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2021-08-07 14:36 - 2019-06-25 18:46 - 000000000 ____D C:\ProgramData\Riot Games 2021-08-07 14:12 - 2019-06-25 17:09 - 000000000 ____D C:\Users\Robin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc 2021-08-07 14:12 - 2019-06-25 17:09 - 000000000 ____D C:\Users\Robin\AppData\Local\SquirrelTemp 2021-08-07 14:04 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2021-08-07 13:57 - 2020-08-31 09:37 - 000002451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-08-06 11:51 - 2019-10-04 20:47 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData 2021-08-05 11:42 - 2021-04-20 19:34 - 000000000 ___HD C:\$WinREAgent 2021-08-04 10:03 - 2018-11-21 13:05 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2021-08-03 01:34 - 2019-12-07 11:03 - 000262144 _____ C:\WINDOWS\system32\config\BBI 2021-08-02 20:22 - 2021-06-28 17:51 - 000000000 ____D C:\ProgramData\Unified Remote 2021-08-02 17:23 - 2020-12-04 22:17 - 000001846 _____ C:\Users\Robin\Desktop\Porofessor.gg.lnk 2021-08-02 11:46 - 2021-07-01 22:39 - 000003540 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d75d6ae22d496f 2021-08-02 11:46 - 2021-06-09 22:09 - 000003634 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-08-01 10:54 - 2019-06-25 13:00 - 000000000 ____D C:\Users\Robin\AppData\Local\PlaceholderTileLogoFolder 2021-07-31 23:37 - 2019-06-25 12:28 - 000000000 ____D C:\Users\Robin\AppData\Local\Packages 2021-07-31 23:32 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-07-31 10:48 - 2020-12-12 12:29 - 000000000 ____D C:\Users\Robin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Paladium Launcher 2021-07-31 10:48 - 2020-09-22 19:16 - 000000000 ____D C:\ProgramData\FLEXnet 2021-07-31 10:48 - 2020-07-18 13:58 - 000000000 ____D C:\Program Files (x86)\Notepad++ 2021-07-31 10:48 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2021-07-31 10:33 - 2019-06-26 08:29 - 000000000 ____D C:\Users\Robin\AppData\Roaming\Twitch 2021-07-31 10:33 - 2019-06-25 17:41 - 000000000 ___HD C:\Users\Robin\AppData\Roaming\.minecraft 2021-07-31 10:00 - 2020-08-26 11:35 - 001752512 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll 2021-07-31 10:00 - 2020-08-26 11:35 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll 2021-07-31 09:59 - 2020-08-26 11:35 - 000250296 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll 2021-07-31 09:59 - 2020-08-26 11:35 - 000195000 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy.dll 2021-07-31 09:59 - 2020-08-26 11:35 - 000159672 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll 2021-07-31 09:59 - 2020-08-26 11:35 - 000038344 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamemodcontrol.exe 2021-07-31 09:18 - 2021-06-09 22:01 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2021-07-31 08:58 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2021-07-19 18:50 - 2020-11-27 15:13 - 000000000 ____D C:\ProgramData\DCSB 2021-07-19 00:10 - 2019-06-27 15:50 - 000000000 ____D C:\WINDOWS\system32\MRT 2021-07-19 00:07 - 2019-06-27 15:50 - 133422552 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2021-07-18 20:09 - 2021-02-05 11:01 - 000001846 _____ C:\Users\Robin\Desktop\Rocket League Tracker.lnk 2021-07-18 20:09 - 2021-01-10 15:23 - 000001846 _____ C:\Users\Robin\Desktop\CurseForge.lnk 2021-07-13 08:10 - 2021-06-09 22:09 - 000002648 _____ C:\WINDOWS\system32\Tasks\ASC_PerformanceMonitor 2021-07-12 22:52 - 2019-10-05 18:29 - 000000000 ____D C:\Users\Robin\AppData\Roaming\Origin 2021-07-12 22:52 - 2019-10-05 18:29 - 000000000 ____D C:\ProgramData\Origin 2021-07-12 21:10 - 2019-10-05 18:41 - 000000000 ____D C:\Program Files (x86)\Origin Games 2021-07-12 21:09 - 2019-10-05 18:29 - 000000000 ____D C:\Users\Robin\AppData\Local\Origin 2021-07-12 11:58 - 2021-06-09 19:56 - 000000000 ___DC C:\WINDOWS\Panther 2021-07-12 11:54 - 2021-06-09 22:09 - 000003254 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2021-07-12 11:54 - 2021-06-09 22:09 - 000002298 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC 2021-07-12 11:54 - 2021-06-09 22:09 - 000000000 ____D C:\WINDOWS\system32\Tasks\Apple 2021-07-09 21:15 - 2020-11-20 18:20 - 000000000 ____D C:\Program Files\Riot Vanguard 2021-07-09 19:07 - 2020-05-21 12:29 - 000000000 ____D C:\Program Files (x86)\Rockstar Games 2021-07-09 19:07 - 2020-05-21 12:28 - 000000000 ____D C:\Program Files\Rockstar Games 2021-07-09 14:51 - 2021-06-09 22:01 - 006076792 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2021-07-09 14:49 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning 2021-07-09 14:49 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions ==================== Fichiers à la racine de certains dossiers ======== 2019-07-30 10:53 - 2019-07-30 10:53 - 000000818 _____ () C:\Users\Robin\AppData\Roaming\AdobeWLCMR2Cache.dat 2019-09-08 18:42 - 2019-09-08 18:42 - 000000132 _____ () C:\Users\Robin\AppData\Roaming\Préfs Format PNG Adobe CS6 2019-10-14 17:19 - 2019-10-14 17:19 - 000001167 _____ () C:\Users\Robin\AppData\Roaming\trace_FilterInstaller.1.txt 2019-10-14 17:19 - 2019-11-22 09:09 - 000000905 _____ () C:\Users\Robin\AppData\Roaming\trace_FilterInstaller.txt 2019-10-14 17:19 - 2019-11-22 09:09 - 000000000 _____ () C:\Users\Robin\AppData\Roaming\trace_FilterInstaller.txt-CRT.txt 2019-09-22 08:27 - 2019-10-05 15:47 - 000004659 _____ () C:\Users\Robin\AppData\Roaming\VoiceMeeterDefault.xml 2021-07-29 10:35 - 2021-07-29 10:35 - 000000021 _____ () C:\Users\Robin\AppData\Local\Autosofted License.txt 2020-09-19 15:27 - 2020-09-19 15:27 - 000003584 _____ () C:\Users\Robin\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2019-07-01 17:18 - 2019-07-01 17:18 - 000000000 _____ () C:\Users\Robin\AppData\Local\oobelibMkey.log 2020-04-18 11:26 - 2020-04-18 11:26 - 000000741 _____ () C:\Users\Robin\AppData\Local\recently-used.xbel 2019-07-06 09:46 - 2019-07-06 09:46 - 000000017 _____ () C:\Users\Robin\AppData\Local\resmon.resmoncfg ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================