Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 30-10-2021 Exécuté par lucky (administrateur) sur DESKTOP-9B4NLV1 (ASUSTeK COMPUTER INC. ROG Strix GL10DH_GL10DH) (31-10-2021 12:45:49) Exécuté depuis C:\Users\lucky\Desktop Profils chargés: lucky Plate-forme: Microsoft Windows 10 Famille Version 20H2 19042.1288 (X64) Langue: Français (France) Navigateur par défaut: Chrome Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.​) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_74be8ed024c977b8\ASUSLinkRemote\AsusLinkRemote.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.​) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_74be8ed024c977b8\ASUSSoftwareManager\AsusSoftwareManagerAgent.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) C:\Program Files (x86)\ASUS\ROG Live Service\ROGLiveService.exe (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\LightingService\LightingService.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_74be8ed024c977b8\AsusAppService\AsusAppService.exe (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_74be8ed024c977b8\ASUSLinkNear\AsusLinkNear.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_74be8ed024c977b8\ASUSOptimization\AsusOptimization.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_74be8ed024c977b8\ASUSOptimization\AsusOptimizationStartupTask.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_74be8ed024c977b8\ASUSOptimization\AsusOSD.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_74be8ed024c977b8\ASUSSoftwareManager\AsusSoftwareManager.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_74be8ed024c977b8\ASUSSystemAnalysis\AsusSystemAnalysis.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe <4> (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\TotalAV\SAVAPI\elam_ppl\AMSProtectedService.exe (A-Volute SAS -> A-Volute) C:\Users\lucky\AppData\Local\NhNotifSys\sonicstudio\asusns.exe (A-Volute SAS -> Nahimic) C:\Windows\System32\NahimicService.exe (A-Volute SAS -> Nahimic) C:\Windows\System32\NahimicSvc64.exe (A-Volute SAS -> Nahimic) C:\Windows\SysWOW64\NahimicSvc32.exe (Digital Communications Inc -> Сorp ÐCom) C:\Program Files (x86)\Digital Communications\SAntivirus\SAntivirusClient.exe (Digital Communications Inc -> Сorp ÐCom) C:\Program Files (x86)\Digital Communications\SAntivirus\SAntivirusIC.exe (Digital Communications Inc -> Сorp DCom) C:\Program Files (x86)\Digital Communications\SAntivirus\SAntivirusService.exe (Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe (Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\Win64\EpicWebHelper.exe <2> (Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <31> (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler64.exe (McAfee LLC.) C:\Program Files\WindowsApps\5A894077.McAfeeSecurity_2.1.67.0_x64__wafk5atnkzcwy\mcafee-security.exe (McAfee LLC.) C:\Program Files\WindowsApps\5A894077.McAfeeSecurity_2.1.67.0_x64__wafk5atnkzcwy\Win32\mcafee-security-ft.exe (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\browserhost.exe (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe (Mega Limited -> Mega Limited) C:\Users\lucky\AppData\Local\MEGAsync\MEGAsync.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\Updates\16.0.14527.20234\OfficeClickToRun.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_3.2109.6305.0_x64__8wekyb3d8bbwe\Cortana.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20544.0_x64__8wekyb3d8bbwe\HxTsr.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MusNotifyIcon.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe (Microsoft Windows Hardware Compatibility Publisher -> ASUSTek COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_74be8ed024c977b8\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2> (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvak.inf_amd64_8a6c33718d5a3b53\Display.NvContainer\NVDisplay.Container.exe <2> (Opera Software AS -> Opera Software) C:\Users\lucky\AppData\Local\Programs\Opera\80.0.4170.63\opera_autoupdate.exe <2> (Opera Software AS -> Opera Software) C:\Users\lucky\AppData\Local\Programs\Opera\launcher.exe (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Protected Antivirus Limited -> TotalAV) C:\Program Files (x86)\TotalAV\SecurityService.exe <2> (Protected Antivirus Limited -> TotalAV) C:\Program Files (x86)\TotalAV\TotalAV.exe (Realtek Semiconductor Corp) C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.3.183.0_x64__dt26b99r8h8gj\RtkUWP.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2> (Riot Games, Inc. -> Riot Games, Inc.) C:\Program Files\Riot Vanguard\vgtray.exe (Swift Media Entertainment, Inc. -> Blitz, Inc.) C:\Users\lucky\AppData\Local\Programs\Blitz\Blitz.exe <6> (Valve -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve -> Valve Corporation) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <4> (Valve -> Valve Corporation) D:\Steam\steam.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [3180256 2021-10-21] (Riot Games, Inc. -> Riot Games, Inc.) HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [134936 2021-10-29] (Avast Software s.r.o. -> AVAST Software) HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [881440 2019-06-19] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [706680 2020-12-09] (Oracle America, Inc. -> Oracle Corporation) HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION HKU\S-1-5-21-496747561-3092127905-3112969351-1001\...\Run: [Steam] => D:\Steam\steam.exe [4267928 2021-10-13] (Valve -> Valve Corporation) HKU\S-1-5-21-496747561-3092127905-3112969351-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [33526752 2021-10-29] (Epic Games Inc. -> Epic Games, Inc.) HKU\S-1-5-21-496747561-3092127905-3112969351-1001\...\Run: [85D7C08D024FBCBA1813BD165DBB859957B8404F._service_run] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=service /prefetch:8 HKU\S-1-5-21-496747561-3092127905-3112969351-1001\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3145912 2021-10-20] () [Fichier non signé] HKU\S-1-5-21-496747561-3092127905-3112969351-1001\...\Run: [BakkesMod] => C:\Program Files\BakkesMod\BakkesMod.exe [16070656 2021-01-06] () [Fichier non signé] HKU\S-1-5-21-496747561-3092127905-3112969351-1001\...\Run: [com.blitz.app] => C:\Users\lucky\AppData\Local\Programs\Blitz\Blitz.exe [121742600 2021-10-30] (Swift Media Entertainment, Inc. -> Blitz, Inc.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\95.0.4638.54\Installer\chrmstp.exe [2021-10-25] (Google LLC -> Google LLC) Startup: C:\Users\lucky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2021-01-16] ShortcutTarget: MEGAsync.lnk -> C:\Users\lucky\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited -> Mega Limited) Startup: C:\Users\lucky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Twitch.lnk [2021-10-08] ShortcutTarget: Twitch.lnk -> C:\Users\lucky\AppData\Roaming\Twitch\Bin\Twitch.exe (Twitch Interactive, Inc. -> Twitch Interactive, Inc.) HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {0239A76A-AFB7-418A-A962-4A83B419FDA1} - System32\Tasks\ASUS Update Checker 2.0 => C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_74be8ed024c977b8\ASUSSoftwareManager\AsusUpdateChecker.exe [771208 2021-08-19] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) Task: {09F234AA-552A-4A05-A8E4-41FF0DCAC92B} - System32\Tasks\AsusSystemAnalysis_754F3273-0563-4F20-B12F-826510B07474 => C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_74be8ed024c977b8\ASUSSystemAnalysis\AsusSystemAnalysis.exe [2553472 2021-08-19] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) Task: {11E7E0E6-546D-4D45-A35D-209840F1A5BE} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [653864 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation) Task: {227A29AB-810A-4774-8F72-A5FAF377781A} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913448 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation) Task: {25D7FCFE-D61A-41E6-A365-A9C3A18809D0} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913448 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation) Task: {2baed90d-572b-41e6-aa66-967732e0c6c0} - pas de chemin du fichier Task: {3033B862-4B07-4AB9-AB09-581D53536D44} - System32\Tasks\Opera scheduled Autoupdate 1611696163 => C:\Users\lucky\AppData\Local\Programs\Opera\launcher.exe [46227664 2021-10-20] (Opera Software AS -> Opera Software) Task: {3CE8C855-0979-4C71-B1A4-6F1095E1FA3B} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [134504 2021-10-20] (Microsoft Corporation -> Microsoft Corporation) Task: {41998490-F0FD-4BFC-A251-DA243B2F4FAB} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-27] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log Task: {44B9C8B1-5ECB-4F51-8AB4-5B3AB5719E13} - System32\Tasks\ASUS\ASUSUpdateTaskMachineCore1d6241a61a4994e => C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [163176 2020-05-07] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) Task: {4c9be5e1-2358-4d5f-a450-3f1ab9843213} - pas de chemin du fichier Task: {4CE4493B-4AF8-4D8C-9816-DD5BD96A95FC} - System32\Tasks\NahimicTask64 => C:\WINDOWS\system32\.\NahimicSvc64.exe [1088640 2021-05-27] (A-Volute SAS -> Nahimic) Task: {5D8E6543-DEC4-4990-AE1A-5908854FF89F} - System32\Tasks\ASUS Promotion => C:\Program Files\ASUS\ASUS Promotion\ASUS Promotion.exe [787936 2018-09-06] (ASUSTeK Computer Inc. -> ASUSTeK COMPUTER INC.) Task: {5F474277-6216-46FB-B046-7C8744014C36} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [21978504 2021-10-11] (Microsoft Corporation -> Microsoft Corporation) Task: {66A284E0-EF78-4B0A-8C5D-DC7F4DF4ED16} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation) Task: {90035A24-9B20-4FF9-A60E-F73447297ED0} - System32\Tasks\NahimicSvc32Run => C:\Windows\SysWOW64\NahimicSvc32.exe [829568 2021-05-27] (A-Volute SAS -> Nahimic) Task: {937914B8-27F8-482F-B6D7-0A2F3D43C3FB} - System32\Tasks\NahimicSvc64Run => C:\Windows\system32\NahimicSvc64.exe [1088640 2021-05-27] (A-Volute SAS -> Nahimic) Task: {93A2938A-AB4B-4DCB-9749-76DFF5CD1766} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [134504 2021-10-20] (Microsoft Corporation -> Microsoft Corporation) Task: {96920EC0-8626-4C41-8F9C-E95B6980C1B3} - System32\Tasks\ASUS\ASUSUpdateTaskMachineUA => C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [163176 2020-05-07] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) Task: {9D08C588-D4F0-4CA9-8D17-28C8DE48E216} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation) Task: {9FB74941-D228-49A8-B453-D924AE3E5782} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-27] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {A9211821-5B8E-4036-909B-49FD3601E9B6} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation) Task: {b2233db5-d1a5-4ef7-b9db-156beab11f5f} - pas de chemin du fichier Task: {B5778DC5-6689-4320-ABB1-30591D945B96} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation) Task: {BC994CA3-2323-4017-B877-1C64E1DB1D5F} - System32\Tasks\MEGA\MEGAsync Update Task S-1-5-21-496747561-3092127905-3112969351-1001 => C:\Users\lucky\AppData\Local\MEGAsync\MEGAupdater.exe [1820848 2021-07-24] (Mega Limited -> Mega Limited) Task: {C2C1810D-5BA8-4069-BD05-3EE1F26BA576} - System32\Tasks\ASUS Optimization 36D18D69AFC3 => C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_74be8ed024c977b8\ASUSOptimization\AsusHotkeyExec.exe [233616 2021-08-19] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) Task: {cf19fd24-68e3-4442-a215-c518062ecc24} - pas de chemin du fichier Task: {D7421238-25EC-4718-8F0A-E4F8CEF0362F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-07-04] (Google LLC -> Google LLC) Task: {E0BE9AE1-F813-4023-B6A3-4EC2154DF78B} - System32\Tasks\NahimicTask32 => C:\WINDOWS\system32\..\SysWOW64\NahimicSvc32.exe [829568 2021-05-27] (A-Volute SAS -> Nahimic) Task: {e1472adb-239f-4192-b2a5-0146a4f537b7} - pas de chemin du fichier Task: {E2585BD7-4C47-4843-83E7-A0FF05AB1737} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3310688 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation) Task: {F26EDE79-07C0-4D90-963D-E4871C7D0D4C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-07-04] (Google LLC -> Google LLC) Task: {F89569DE-FECA-4227-B34B-71461F812C3B} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [21978504 2021-10-11] (Microsoft Corporation -> Microsoft Corporation) Task: {FCECE19D-9EE8-44A4-8A04-0D9F54D31006} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1790184 2021-04-30] (Avast Software s.r.o. -> Avast Software) Task: {FFFB116C-E304-4481-A7F7-055BC7A1FD9B} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [4974872 2021-10-29] (Avast Software s.r.o. -> AVAST Software) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{22ee71d9-2c2e-4cfc-9b6f-0e66ca8da319}: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{34f424e0-46f6-475e-a1ad-06b7a94b3c62}: [DhcpNameServer] 192.168.1.254 Edge: ======= Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)] Edge Extension: (Pas de nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [non trouvé(e)] Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)] Edge Extension: (Pas de nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [non trouvé(e)] Edge DefaultProfile: Default Edge Profile: C:\Users\lucky\AppData\Local\Microsoft\Edge\User Data\Default [2021-10-20] Edge HomePage: Default -> hxxp//www.google.com FireFox: ======== FF Plugin: @java.com/DTPlugin,version=11.281.2 -> C:\Program Files\Java\jre1.8.0_281\bin\dtplugin\npDeployJava1.dll [2021-04-13] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.281.2 -> C:\Program Files\Java\jre1.8.0_281\bin\plugin2\npjp2.dll [2021-04-13] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-05-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2021-05-31] (Microsoft Corporation -> Microsoft Corporation) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\lucky\AppData\Local\Google\Chrome\User Data\Default [2021-10-31] CHR Notifications: Default -> hxxps//fm-base.co.uk; hxxps//mail.google.com; hxxps//rocket-league.com; hxxps//uavom.gshangined.top; hxxps//xdafs.gshangined.top CHR HomePage: Default -> hxxp//www.google.com CHR StartupUrls: Default -> "hxxps//www.clubic.com/tutoriels/article-858692-1-comment-definir-google-chrome-navigateur-defaut.html","chrome://settings/languages","hxxps//www.clubic.com/tutoriels/article-858692-1-comment-definir-google-chrome-navigateur-defaut.html","hxxp//google.com/" CHR DefaultSearchURL: Default -> hxxps//fr.search.yahoo.com/search?fr=mcafee&type=E210FR91082G0&p={searchTerms} CHR DefaultSearchKeyword: Default -> mcafee CHR DefaultSuggestURL: Default -> hxxps//fr.search.yahoo.com/sugg/gossip/gossip-fr-partner?output=fxjson&appid=mca&source=yahoo_mcafee_searchassist&command={searchTerms} CHR Extension: (Slides) - C:\Users\lucky\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-07-04] CHR Extension: (Docs) - C:\Users\lucky\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-07-04] CHR Extension: (Google Drive) - C:\Users\lucky\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-11-02] CHR Extension: (MEGA) - C:\Users\lucky\AppData\Local\Google\Chrome\User Data\Default\Extensions\bigefpfhnfcobdlfbedofhhaibnlghod [2021-10-29] CHR Extension: (YouTube) - C:\Users\lucky\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-07-04] CHR Extension: (PDF Viewer & Converter by FromDocToPDF) - C:\Users\lucky\AppData\Local\Google\Chrome\User Data\Default\Extensions\chnacmlpiecdhgkdgeoipkmdbekengck [2020-08-28] CHR Extension: (DailyProductivityTools) - C:\Users\lucky\AppData\Local\Google\Chrome\User Data\Default\Extensions\difcnlhbpohkmlhkpkimihocbagbijii [2020-08-19] CHR Extension: (Sheets) - C:\Users\lucky\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-07-04] CHR Extension: (McAfee® WebAdvisor) - C:\Users\lucky\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2021-10-23] CHR Extension: (Google Docs hors connexion) - C:\Users\lucky\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-10-14] CHR Extension: (Free Forms by GetFormsOnline) - C:\Users\lucky\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijeeahiblfninaadhhlnaicbmnbchima [2020-08-17] CHR Extension: (Ask Web Search) - C:\Users\lucky\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbldcomffojmkkjbblhcebeicbncmjpf [2020-08-17] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\lucky\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29] CHR Extension: (Gmail) - C:\Users\lucky\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-11-04] CHR Profile: C:\Users\lucky\AppData\Local\Google\Chrome\User Data\System Profile [2021-02-03] CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] Opera: ======= OPR Profile: C:\Users\lucky\AppData\Roaming\Opera Software\Opera Stable [2021-01-26] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) "SAntivirusIC" => service a été déverrouillé. <==== ATTENTION R2 AMSProtectedService; C:\Program Files (x86)\TotalAV\savapi\elam_ppl\amsprotectedservice.exe [639304 2021-05-13] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) <==== ATTENTION S2 asus; C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [163176 2020-05-07] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) R2 AsusAppService; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_74be8ed024c977b8\AsusAppService\AsusAppService.exe [364688 2021-08-19] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 ASUSLinkNear; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_74be8ed024c977b8\ASUSLinkNear\AsusLinkNear.exe [1307792 2021-08-19] (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) R2 ASUSLinkRemote; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_74be8ed024c977b8\ASUSLinkRemote\AsusLinkRemote.exe [753808 2021-08-19] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.​) S3 asusm; C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [163176 2020-05-07] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) R2 ASUSOptimization; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_74be8ed024c977b8\ASUSOptimization\AsusOptimization.exe [334464 2021-08-19] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 ASUSSoftwareManager; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_74be8ed024c977b8\ASUSSoftwareManager\AsusSoftwareManager.exe [1012872 2021-08-19] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 ASUSSystemAnalysis; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_74be8ed024c977b8\ASUSSystemAnalysis\AsusSystemAnalysis.exe [2553472 2021-08-19] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 ASUSSystemDiagnosis; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_74be8ed024c977b8\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe [612760 2021-08-19] (Microsoft Windows Hardware Compatibility Publisher -> ASUSTek COMPUTER INC.) R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [8376400 2021-10-29] (Avast Software s.r.o. -> AVAST Software) R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [680728 2021-10-29] (Avast Software s.r.o. -> AVAST Software) R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [427800 2021-10-29] (Avast Software s.r.o. -> AVAST Software) R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2021-05-31] (Avast Software s.r.o. -> AVAST Software) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8894752 2021-01-29] (BattlEye Innovations e.K. -> ) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12034464 2021-10-12] (Microsoft Corporation -> Microsoft Corporation) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [805488 2021-02-26] (EasyAntiCheat Oy -> EasyAntiCheat Ltd) S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [16029472 2021-10-05] (Epic Games Inc. -> Epic Games, Inc.) R2 LightingService; C:\Program Files (x86)\LightingService\LightingService.exe [3210232 2021-03-03] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [973040 2021-10-20] (McAfee, LLC -> McAfee, LLC) R2 NahimicService; C:\WINDOWS\system32\NahimicService.exe [1675392 2021-05-27] (A-Volute SAS -> Nahimic) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2557656 2021-10-20] (Electronic Arts, Inc. -> Electronic Arts) R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3476184 2021-10-20] (Electronic Arts, Inc. -> Electronic Arts) S3 Rockstar Service; D:\Launcher\RockstarService.exe [1332632 2021-03-30] (Rockstar Games, Inc. -> Rockstar Games) R2 ROG Live Service; C:\Program Files (x86)\ASUS\ROG Live Service\ROGLiveService.exe [5941936 2021-10-21] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) R2 SAntivirusIC; C:\Program Files (x86)\Digital Communications\SAntivirus\SAntivirusIC.exe [6940688 2021-05-14] (Digital Communications Inc -> Сorp ÐCom) <==== ATTENTION R2 SAntivirusSvc; C:\Program Files (x86)\Digital Communications\SAntivirus\SAntivirusService.exe [690192 2021-08-29] (Digital Communications Inc -> Сorp DCom) <==== ATTENTION R2 SecurityService; C:\Program Files (x86)\TotalAV\SecurityService.exe [263976 2021-05-14] (Protected Antivirus Limited -> TotalAV) <==== ATTENTION R2 SecurityServiceMonitor; C:\Program Files (x86)\TotalAV\SecurityService.exe [263976 2021-05-14] (Protected Antivirus Limited -> TotalAV) <==== ATTENTION S3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [10165360 2021-10-21] (Riot Games, Inc. -> Riot Games, Inc.) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvak.inf_amd64_8a6c33718d5a3b53\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvak.inf_amd64_8a6c33718d5a3b53\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S0 AMSElamDriver; C:\WINDOWS\System32\drivers\amselam.sys [21976 2021-05-13] (Microsoft Windows Early Launch Anti-malware Publisher -> Avira Operations GmbH & Co. KG) R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [35720 2021-10-29] (Avast Software s.r.o. -> AVAST Software) R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [222112 2021-10-29] (Avast Software s.r.o. -> AVAST Software) R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [372232 2021-10-29] (Avast Software s.r.o. -> AVAST Software) R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [250392 2021-10-29] (Avast Software s.r.o. -> AVAST Software) R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [99344 2021-10-29] (Avast Software s.r.o. -> AVAST Software) R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [21936 2021-09-18] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software) R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [41352 2021-10-29] (Avast Software s.r.o. -> AVAST Software) R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [184648 2021-10-29] (Avast Software s.r.o. -> AVAST Software) R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [538992 2021-10-29] (Avast Software s.r.o. -> AVAST Software) R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [107864 2021-10-29] (Avast Software s.r.o. -> AVAST Software) R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [82928 2021-10-29] (Avast Software s.r.o. -> AVAST Software) R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [852240 2021-10-29] (Avast Software s.r.o. -> AVAST Software) R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [557664 2021-10-29] (Avast Software s.r.o. -> AVAST Software) R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [214368 2021-10-29] (Avast Software s.r.o. -> AVAST Software) R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [316632 2021-10-29] (Avast Software s.r.o. -> AVAST Software) R1 ATKWMIACPIIO; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_74be8ed024c977b8\ASUSOptimization\atkwmiacpi64.sys [44200 2021-08-19] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 avgntflt; C:\WINDOWS\System32\DRIVERS\avgntflt.sys [208176 2020-12-09] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) R1 avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [197176 2020-12-09] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) R1 avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [46704 2020-12-09] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Fichier non signé] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Fichier non signé] R3 ScpVBus; C:\WINDOWS\System32\drivers\ScpVBus.sys [39168 2013-05-19] (Bruce James -> Scarlet.Crush Productions) R1 TASANTIVIRUSKD; C:\Program Files (x86)\Digital Communications\SAntivirus\TASAntivirusKD.sys [86024 2021-05-14] (Digital Communications Inc -> Corp DCom) <==== ATTENTION S1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [8234256 2021-10-20] (Riot Games, Inc. -> Riot Games, Inc.) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation) R1 webshieldfilter; C:\WINDOWS\System32\drivers\webshieldfilter.sys [96264 2020-12-09] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) <==== ATTENTION S3 AsusSharedCam; \SystemRoot\System32\DriverStore\FileRepository\asussharedcam.inf_amd64_19504a3619a232cc\AsusSharedCam.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-10-31 12:45 - 2021-10-31 12:46 - 000034925 _____ C:\Users\lucky\Desktop\FRST.txt 2021-10-31 12:45 - 2021-10-31 12:46 - 000000000 ____D C:\FRST 2021-10-31 12:45 - 2021-10-31 12:45 - 002310656 _____ (Farbar) C:\Users\lucky\Downloads\FRST64.exe 2021-10-31 12:45 - 2021-10-31 12:45 - 002310656 _____ (Farbar) C:\Users\lucky\Desktop\FRST64.exe 2021-10-30 01:15 - 2021-10-30 01:15 - 000002078 _____ C:\Users\Public\Desktop\Avast Antivirus Gratuit.lnk 2021-10-29 20:52 - 2021-10-29 20:52 - 000340248 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe 2021-10-29 20:52 - 2021-10-29 20:52 - 000214368 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys 2021-10-29 20:50 - 2021-10-29 20:50 - 000000000 _____ C:\Users\lucky\AppData\Local\BIT5B6A.tmp 2021-10-29 20:50 - 2021-10-29 20:50 - 000000000 _____ C:\Users\lucky\AppData\Local\BIT5B4A.tmp 2021-10-25 18:14 - 2021-10-25 18:14 - 000044822 _____ C:\Users\lucky\Downloads\Lgrnd 433 Tiki Taka v1.1.fmf 2021-10-25 18:14 - 2021-10-25 18:14 - 000044822 _____ C:\Lgrnd 433 Tiki Taka v1.1.fmf 2021-10-25 18:07 - 2020-05-23 16:12 - 000046394 _____ C:\rdfs_pep_barca_tiki_taka_recreation_more_realistic.fmf 2021-10-25 18:06 - 2021-10-25 18:06 - 000186627 _____ C:\Users\lucky\Downloads\rdf's pep barca tiki taka fm20.zip 2021-10-19 16:41 - 2021-10-19 16:41 - 000002207 _____ C:\Users\lucky\Desktop\Blitz.lnk 2021-10-17 21:07 - 2021-10-17 21:07 - 000611960 _____ C:\WINDOWS\SysWOW64\TextShaping.dll 2021-10-17 21:07 - 2021-10-17 21:07 - 000570368 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2021-10-17 21:07 - 2021-10-17 21:07 - 000452096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2021-10-17 21:07 - 2021-10-17 21:07 - 000449024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv 2021-10-17 21:07 - 2021-10-17 21:07 - 000011495 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2021-10-17 21:07 - 2021-10-17 21:07 - 000007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdxm.ocx 2021-10-17 21:07 - 2021-10-17 21:07 - 000005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdxm.ocx 2021-10-17 21:06 - 2021-10-17 21:06 - 001823296 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2021-10-17 21:06 - 2021-10-17 21:06 - 001393504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2021-10-17 21:06 - 2021-10-17 21:06 - 000706536 _____ C:\WINDOWS\system32\TextShaping.dll 2021-10-17 21:06 - 2021-10-17 21:06 - 000593920 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2021-10-17 21:06 - 2021-10-17 21:06 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll 2021-10-17 21:06 - 2021-10-17 21:06 - 000098304 _____ C:\WINDOWS\system32\Drivers\cimfs.sys 2021-10-17 20:59 - 2021-10-17 21:00 - 000000000 ___HD C:\$WinREAgent 2021-10-17 15:28 - 2021-10-17 15:28 - 016370373 _____ C:\Users\lucky\Desktop\2 8 TE HIS1.2. La Mediterranee antique lempreinte romaine.pdf 2021-10-17 15:22 - 2021-10-17 15:22 - 125176428 _____ C:\Users\lucky\Downloads\WIN_20211017_16_16_03_Pro.mp4 2021-10-16 17:56 - 2021-10-16 17:56 - 000341644 _____ C:\Users\lucky\Downloads\activite1_chap3_modele_optique.pdf 2021-10-16 17:56 - 2021-10-16 17:56 - 000341644 _____ C:\Users\lucky\Desktop\activite1 chap3 modele optique.pdf 2021-10-15 20:55 - 2021-08-26 23:26 - 001858688 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2021-10-15 20:55 - 2021-08-26 23:26 - 001858688 _____ C:\WINDOWS\system32\vulkaninfo.exe 2021-10-15 20:55 - 2021-08-26 23:26 - 001474672 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2021-10-15 20:55 - 2021-08-26 23:26 - 001438848 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2021-10-15 20:55 - 2021-08-26 23:26 - 001438848 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2021-10-15 20:55 - 2021-08-26 23:26 - 001212544 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2021-10-15 20:55 - 2021-08-26 23:26 - 001097848 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2021-10-15 20:55 - 2021-08-26 23:26 - 001097848 _____ C:\WINDOWS\system32\vulkan-1.dll 2021-10-15 20:55 - 2021-08-26 23:26 - 000951928 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2021-10-15 20:55 - 2021-08-26 23:26 - 000951928 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2021-10-15 20:55 - 2021-08-26 23:23 - 002111632 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2021-10-15 20:55 - 2021-08-26 23:23 - 001595008 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2021-10-15 20:55 - 2021-08-26 23:23 - 001519760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2021-10-15 20:55 - 2021-08-26 23:23 - 001170576 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2021-10-15 20:55 - 2021-08-26 23:23 - 000715920 _____ C:\WINDOWS\system32\nvofapi64.dll 2021-10-15 20:55 - 2021-08-26 23:23 - 000705144 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe 2021-10-15 20:55 - 2021-08-26 23:23 - 000675440 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll 2021-10-15 20:55 - 2021-08-26 23:23 - 000644752 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll 2021-10-15 20:55 - 2021-08-26 23:23 - 000576144 _____ C:\WINDOWS\SysWOW64\nvofapi.dll 2021-10-15 20:55 - 2021-08-26 23:23 - 000564368 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll 2021-10-15 20:55 - 2021-08-26 23:23 - 000046264 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhdap64.dll 2021-10-15 20:55 - 2021-08-26 23:22 - 008853112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2021-10-15 20:55 - 2021-08-26 23:22 - 007919232 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2021-10-15 20:55 - 2021-08-26 23:22 - 005679760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2021-10-15 20:55 - 2021-08-26 23:22 - 002924672 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2021-10-15 20:55 - 2021-08-26 23:22 - 000917632 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2021-10-15 20:55 - 2021-08-26 23:22 - 000281720 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe 2021-10-15 20:55 - 2021-08-26 23:21 - 000849040 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe 2021-10-15 20:55 - 2021-08-26 22:55 - 000083227 _____ C:\WINDOWS\system32\nvinfo.pb 2021-10-10 18:59 - 2021-10-10 18:59 - 000313481 _____ C:\Users\lucky\Downloads\Pix_sea.pptx 2021-10-10 18:54 - 2021-10-10 18:54 - 000009804 _____ C:\Users\lucky\Downloads\Pix_animaux (2).odt 2021-10-10 18:53 - 2021-10-10 18:53 - 000009804 _____ C:\Users\lucky\Downloads\Pix_animaux.odt 2021-10-10 18:53 - 2021-10-10 18:53 - 000009804 _____ C:\Users\lucky\Downloads\Pix_animaux (1).odt 2021-10-10 18:38 - 2021-10-10 18:38 - 000009423 _____ C:\Users\lucky\Downloads\Pix_JO.ods 2021-10-10 18:38 - 2021-10-10 18:38 - 000009423 _____ C:\Users\lucky\Downloads\Pix_JO (1).ods 2021-10-10 18:37 - 2021-10-10 18:37 - 000009976 _____ C:\Users\lucky\Downloads\Pix_JO.xlsx 2021-10-08 20:31 - 2021-10-08 20:31 - 004492952 _____ C:\Users\lucky\Downloads\2_8_TE_HIS1.1._La_Med_atq_lempreinte_grecque (1).pdf 2021-10-08 16:59 - 2021-10-08 16:59 - 004492952 _____ C:\Users\lucky\Downloads\2_8_TE_HIS1.1._La_Med_atq_lempreinte_grecque.pdf 2021-10-08 13:26 - 2021-10-08 13:26 - 004492952 _____ C:\Users\lucky\Desktop\2 8 TE HIS1.1. La Med atq lempreinte grecque.pdf 2021-10-05 17:48 - 2021-10-05 17:48 - 000000000 ____D C:\Users\lucky\AppData\Local\EOSUserHelper 2021-10-04 21:31 - 2021-10-04 21:31 - 000000000 ____D C:\Users\Default\AppData\Local\Epic Games 2021-10-02 13:20 - 2021-10-02 13:20 - 000002466 _____ C:\Users\lucky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Better-CrewLink.lnk ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-10-31 12:46 - 2019-10-23 20:38 - 000000000 ____D C:\Program Files\Microsoft Office 2021-10-31 12:45 - 2021-04-20 20:57 - 001770906 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2021-10-31 12:45 - 2019-12-07 15:49 - 000791594 _____ C:\WINDOWS\system32\perfh00C.dat 2021-10-31 12:45 - 2019-12-07 15:49 - 000149760 _____ C:\WINDOWS\system32\perfc00C.dat 2021-10-31 12:45 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2021-10-31 12:42 - 2020-05-07 03:49 - 000000000 ____D C:\ProgramData\ASUS 2021-10-31 12:40 - 2021-04-20 20:54 - 000003752 _____ C:\WINDOWS\system32\Tasks\AsusSystemAnalysis_754F3273-0563-4F20-B12F-826510B07474 2021-10-31 12:40 - 2021-02-17 18:38 - 000000000 ____D C:\Users\lucky\AppData\Roaming\Twitch 2021-10-31 12:40 - 2020-07-04 19:04 - 000000000 ____D C:\Program Files (x86)\Google 2021-10-31 12:40 - 2020-05-07 03:42 - 000000000 ____D C:\ProgramData\NVIDIA 2021-10-31 12:39 - 2021-02-19 14:55 - 000000000 ____D C:\Users\lucky\AppData\Roaming\Blitz 2021-10-31 12:38 - 2021-08-24 22:50 - 000001148 _____ C:\Users\lucky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TotalAV.lnk 2021-10-31 12:38 - 2021-08-24 22:49 - 000000000 ____D C:\Program Files (x86)\TotalAV 2021-10-31 12:38 - 2021-08-08 21:54 - 000003112 _____ C:\WINDOWS\system32\Tasks\NahimicTask32 2021-10-31 12:38 - 2021-08-08 21:54 - 000003092 _____ C:\WINDOWS\system32\Tasks\NahimicTask64 2021-10-31 12:38 - 2021-05-18 17:00 - 000000032 _____ C:\Users\lucky\AppData\Roaming\.machineId 2021-10-31 12:38 - 2021-04-20 20:54 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2021-10-31 12:38 - 2021-04-20 20:47 - 000008192 ___SH C:\DumpStack.log.tmp 2021-10-31 12:38 - 2020-07-04 18:58 - 000000000 ____D C:\ProgramData\Avast Software 2021-10-31 12:38 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-10-30 13:10 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2021-10-30 12:14 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2021-10-30 12:14 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2021-10-30 12:13 - 2020-07-04 18:51 - 000000000 ____D C:\Users\lucky\AppData\Local\Packages 2021-10-30 12:03 - 2021-04-20 20:47 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2021-10-30 01:23 - 2021-04-20 20:54 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update 2021-10-30 01:20 - 2021-04-20 20:48 - 000000000 ____D C:\Users\lucky 2021-10-30 01:19 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\NDF 2021-10-30 01:16 - 2020-07-04 22:58 - 000000001 _____ C:\WINDOWS\vgkbootstatus.dat 2021-10-30 01:15 - 2020-07-05 09:19 - 000002090 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Antivirus Gratuit.lnk 2021-10-30 01:00 - 2020-07-04 19:18 - 000000000 ____D C:\Users\lucky\AppData\Roaming\discord 2021-10-30 00:50 - 2020-07-04 19:17 - 000000000 ____D C:\Users\lucky\AppData\Local\Discord 2021-10-29 22:27 - 2020-07-04 19:34 - 000000000 ____D C:\ProgramData\Riot Games 2021-10-29 20:52 - 2020-10-31 19:53 - 000184648 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys 2021-10-29 20:52 - 2020-07-04 18:59 - 000852240 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys 2021-10-29 20:52 - 2020-07-04 18:59 - 000557664 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys 2021-10-29 20:52 - 2020-07-04 18:59 - 000538992 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetHub.sys 2021-10-29 20:52 - 2020-07-04 18:59 - 000372232 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys 2021-10-29 20:52 - 2020-07-04 18:59 - 000316632 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys 2021-10-29 20:52 - 2020-07-04 18:59 - 000250392 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys 2021-10-29 20:52 - 2020-07-04 18:59 - 000222112 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys 2021-10-29 20:52 - 2020-07-04 18:59 - 000107864 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys 2021-10-29 20:52 - 2020-07-04 18:59 - 000099344 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys 2021-10-29 20:52 - 2020-07-04 18:59 - 000082928 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys 2021-10-29 20:52 - 2020-07-04 18:59 - 000041352 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys 2021-10-29 20:52 - 2020-07-04 18:59 - 000035720 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArDisk.sys 2021-10-29 20:52 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2021-10-29 20:50 - 2020-05-07 03:49 - 000000000 ____D C:\Program Files (x86)\ASUS 2021-10-25 14:30 - 2020-08-06 11:01 - 000000081 _____ C:\Users\lucky\AppData\Local\.bidstack.fault 2021-10-25 14:21 - 2020-08-10 09:28 - 000000081 _____ C:\Users\lucky\AppData\LocalLow\.bidstack.fault 2021-10-24 19:17 - 2020-07-04 20:56 - 000000000 ____D C:\Users\lucky\AppData\Local\CrashDumps 2021-10-23 18:04 - 2021-01-22 18:40 - 000000000 ____D C:\Users\lucky\AppData\Roaming\bettercrewlink 2021-10-23 16:09 - 2020-08-05 23:32 - 000002444 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-10-23 16:04 - 2020-07-04 22:57 - 000000000 ____D C:\Program Files\Riot Vanguard 2021-10-22 21:22 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2021-10-22 19:10 - 2021-04-20 20:54 - 000004236 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1611696163 2021-10-22 19:10 - 2021-01-26 22:22 - 000001407 _____ C:\Users\lucky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navigateur Opera.lnk 2021-10-20 21:10 - 2021-04-20 20:54 - 000003378 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-496747561-3092127905-3112969351-1001 2021-10-20 21:10 - 2021-04-20 20:48 - 000002419 _____ C:\Users\lucky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-10-20 13:05 - 2021-01-18 15:48 - 000000000 ____D C:\Program Files (x86)\Origin 2021-10-19 16:41 - 2021-02-19 14:55 - 000002215 _____ C:\Users\lucky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blitz.lnk 2021-10-19 16:40 - 2021-01-18 15:47 - 000000000 ____D C:\Users\lucky\AppData\Local\Origin 2021-10-19 16:40 - 2021-01-18 15:47 - 000000000 ____D C:\ProgramData\Origin 2021-10-17 22:29 - 2021-04-20 20:47 - 000649448 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2021-10-17 22:29 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\UNP 2021-10-17 22:29 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2021-10-17 22:29 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2021-10-17 22:29 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources 2021-10-17 22:29 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2021-10-17 22:29 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2021-10-17 22:29 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2021-10-17 22:29 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\DiagTrack 2021-10-17 22:29 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2021-10-17 20:59 - 2020-07-09 15:19 - 000000000 ____D C:\WINDOWS\system32\MRT 2021-10-17 20:58 - 2020-07-09 15:19 - 139806512 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2021-10-17 15:23 - 2021-04-09 18:25 - 000000000 ____D C:\Users\lucky\Desktop\Nouveau dossier (3) 2021-10-15 20:56 - 2020-05-07 03:42 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2021-10-12 15:24 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2021-10-10 12:50 - 2021-04-26 11:49 - 000003540 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d7361e6c880814 2021-10-10 12:50 - 2021-04-20 20:54 - 000003634 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-10-08 16:48 - 2021-04-20 20:56 - 000000000 ____D C:\Users\lucky\AppData\Local\D3DSCache 2021-10-08 13:17 - 2021-02-17 18:38 - 000001111 _____ C:\Users\lucky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Twitch.lnk 2021-10-07 22:13 - 2020-07-04 19:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Riot Games 2021-10-05 17:45 - 2020-07-07 15:39 - 000000000 ____D C:\Users\lucky\AppData\Local\Epic Games 2021-10-03 20:14 - 2020-10-09 20:27 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2021-10-01 17:52 - 2021-04-20 20:54 - 000003590 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2021-10-01 17:52 - 2021-04-20 20:54 - 000003466 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore ==================== Fichiers à la racine de certains dossiers ======== 2021-05-18 20:45 - 2021-05-18 20:45 - 000000081 _____ () C:\Users\lucky\AppData\Roaming\.bidstack.fault 2021-05-18 17:00 - 2021-10-31 12:38 - 000000032 _____ () C:\Users\lucky\AppData\Roaming\.machineId 2021-01-19 19:28 - 2021-01-19 23:23 - 000004745 _____ () C:\Users\lucky\AppData\Roaming\VoiceMeeterDefault.xml 2020-07-07 10:54 - 2020-07-07 10:54 - 000000046 _____ () C:\Users\lucky\AppData\Roaming\WB.CFG 2020-08-06 11:01 - 2021-10-25 14:30 - 000000081 _____ () C:\Users\lucky\AppData\Local\.bidstack.fault 2021-10-29 20:50 - 2021-10-29 20:50 - 000000000 _____ () C:\Users\lucky\AppData\Local\BIT5B4A.tmp 2021-10-29 20:50 - 2021-10-29 20:50 - 000000000 _____ () C:\Users\lucky\AppData\Local\BIT5B6A.tmp 2021-01-19 17:12 - 2021-01-19 17:12 - 000000000 _____ () C:\Users\lucky\AppData\Local\BIT5DB4.tmp 2021-01-19 17:12 - 2021-01-19 17:12 - 000000000 _____ () C:\Users\lucky\AppData\Local\BIT5DC4.tmp 2021-07-02 11:03 - 2021-07-02 11:03 - 000000000 _____ () C:\Users\lucky\AppData\Local\BIT61AC.tmp 2021-08-27 12:58 - 2021-08-27 12:58 - 000000000 _____ () C:\Users\lucky\AppData\Local\BIT6AEE.tmp 2021-06-28 17:09 - 2021-06-28 17:09 - 000000000 _____ () C:\Users\lucky\AppData\Local\BITA284.tmp 2021-05-16 13:58 - 2021-05-16 13:58 - 000000000 _____ () C:\Users\lucky\AppData\Local\BITADEF.tmp 2021-01-26 22:21 - 2021-05-14 16:55 - 000016438 _____ () C:\Users\lucky\AppData\Local\partner.bmp ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================