Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 09-10-2021 Exécuté par cleme (administrateur) sur LAPTOP-J6OL4RS9 (HUAWEI NBLK-WAX9X) (10-10-2021 02:44:52) Exécuté depuis C:\Users\cleme\Desktop Profils chargés: cleme Platform: Microsoft Windows 10 Famille Version 21H1 19043.1237 (X64) Langue: Français (France) Navigateur par défaut: Chrome Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0355756.inf_amd64_5146fc3a012e7afa\B354291\atieclxx.exe (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0355756.inf_amd64_5146fc3a012e7afa\B354291\atiesrxx.exe (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Arvato Digital Services Canada Inc -> arvato digital services llc) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe (Dolby Laboratories, Inc. -> ) C:\Windows\System32\dolbyaposvc\DAX3API.exe <2> (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler64.exe (Huawei Technologies Co., Ltd. -> ) C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe (Huawei Technologies Co., Ltd. -> ) C:\Program Files\Huawei\PCManager\MateBookService.exe (Huawei Technologies Co., Ltd. -> ) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe (Huawei Technologies Co., Ltd. -> ) C:\Windows\System32\RPC\OSD\osdservice.exe (Huawei Technologies Co., Ltd.) C:\Program Files\WindowsApps\HuaweiPC.HuaweiKeyboardHotkeys_9.0.19.0_x64__amfdc1pkdnmaa\HotKey\OSD_Daemon.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_3.2109.6305.0_x64__8wekyb3d8bbwe\Cortana.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20436.0_x64__8wekyb3d8bbwe\HxOutlook.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20436.0_x64__8wekyb3d8bbwe\HxTsr.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12107.1001.15.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.SecHealthUI_cw5n1h2txyewy\SecHealthUI.exe (Microsoft Windows Hardware Compatibility Publisher -> ) C:\Windows\System32\drivers\SessionService.exe (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMService64.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2109.6-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2109.6-0\NisSrv.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_18c775e07a6aaafd\RtkAudUService64.exe <3> ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_18c775e07a6aaafd\RtkAudUService64.exe [1257032 2021-04-21] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM-x32\...\Run: [CorelDRAW Graphics Suite 11b] => D:\Coreldraw installation\Languages\FR\Programs\Registration.exe /title="CorelDRAW Graphics Suite 12" /date=092621 serial=DR12WCZ-8070089-YTK lang=FR HKU\S-1-5-21-2572604483-2099250137-1340266852-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2340224 2021-10-05] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2572604483-2099250137-1340266852-1001\...\Run: [Discord] => C:\Users\cleme\AppData\Local\Discord\Update.exe [1512760 2020-12-03] (Discord Inc. -> GitHub) HKU\S-1-5-21-2572604483-2099250137-1340266852-1001\...\Run: [Spotify] => C:\Users\cleme\AppData\Roaming\Spotify\Spotify.exe [24743552 2021-10-06] (Spotify AB -> Spotify Ltd) HKU\S-1-5-21-2572604483-2099250137-1340266852-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4282600 2021-09-10] (Valve -> Valve Corporation) HKU\S-1-5-21-2572604483-2099250137-1340266852-1001\...\Run: [com.blitz.app] => C:\Users\cleme\AppData\Local\Programs\Blitz\Blitz.exe [117905672 2021-07-20] (Swift Media Entertainment, Inc. -> Blitz, Inc.) HKU\S-1-5-21-2572604483-2099250137-1340266852-1001\...\MountPoints2: {9acf40fa-7224-11eb-b61f-4cebbdbaf816} - "E:\HiSuiteDownLoader.exe" HKU\S-1-5-21-2572604483-2099250137-1340266852-1001\...\MountPoints2: {b44bf52e-e37a-11eb-b62c-4cebbdbaf816} - "E:\HiSuiteDownLoader.exe" HKU\S-1-5-21-2572604483-2099250137-1340266852-1001\...\MountPoints2: {d398c7de-eb42-11eb-b62d-4cebbdbaf816} - "E:\HiSuiteDownLoader.exe" HKU\S-1-5-21-2572604483-2099250137-1340266852-1001\...\MountPoints2: {d398c7ef-eb42-11eb-b62d-4cebbdbaf816} - "E:\HiSuiteDownLoader.exe" HKU\S-1-5-21-2572604483-2099250137-1340266852-500\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2340224 2021-10-05] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2572604483-2099250137-1340266852-500\...\RunOnce: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2340224 2021-10-05] (Microsoft Corporation -> Microsoft Corporation) HKLM\...\Windows x64\Print Processors\Canon MG3600 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDCT.DLL [30208 2015-03-12] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJ Language Monitor MG3600 series: C:\WINDOWS\system32\CNMLMCT.DLL [406528 2015-03-12] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\94.0.4606.81\Installer\chrmstp.exe [2021-10-07] (Google LLC -> Google LLC) Startup: C:\Users\cleme\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Envoyer à OneNote.lnk [2021-09-10] ShortcutTarget: Envoyer à OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {35C3FA46-3F53-4DE3-92A3-71D753354E27} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-06-10] (Google LLC -> Google LLC) Task: {3FCFBAA1-06F7-4A5B-AF59-20A26233D54B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2109.6-0\MpCmdRun.exe [884544 2021-10-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {558D71FE-BF58-40AE-B297-4CD43206E06F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2109.6-0\MpCmdRun.exe [884544 2021-10-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {5F53272B-9379-459A-8BD8-71C74BD291E0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2109.6-0\MpCmdRun.exe [884544 2021-10-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {60A6801F-67A5-475F-A3AA-CF2C473071F6} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [134488 2021-10-09] (Microsoft Corporation -> Microsoft Corporation) Task: {6B1A3755-1AE1-48B4-8588-2567FDBE5D2E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2109.6-0\MpCmdRun.exe [884544 2021-10-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {6B589E9A-0858-4C1E-B2D6-9F65480B234A} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} Task: {735349EC-A750-458A-B45D-B415149AF788} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-06-10] (Google LLC -> Google LLC) Task: {92759113-0AF6-4DFC-BD91-0B8580013FFA} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [3977072 2021-10-05] (Microsoft Corporation -> Microsoft Corporation) Task: {99A46CD3-4CAC-4666-9831-B484BE95EBE4} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [21976976 2021-09-25] (Microsoft Corporation -> Microsoft Corporation) Task: {A41DC042-716D-4350-B809-3F92178ACC4C} - System32\Tasks\Opera scheduled assistant Autoupdate 1604680916 => C:\Users\cleme\AppData\Local\Programs\Opera\launcher.exe -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\cleme\AppData\Local\Programs\Opera\assistant" $(Arg0) Task: {B8222509-4F79-49B7-82E0-0B4C879794DB} - System32\Tasks\CorelUpdateHelperTaskCore => c:\Program Files (x86)\Corel\CUH\v2\CUH.exe [3774160 2021-01-21] (Corel Corporation -> Corel Corporation) Task: {C23C8442-D007-42FF-B10F-0826057AA32C} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [134488 2021-10-09] (Microsoft Corporation -> Microsoft Corporation) Task: {C65842E2-EBFF-44F8-9FFC-0300A40EBB40} - System32\Tasks\CorelUpdateHelperTask-741C9A521AE99028C68B3D550F59CB50 => c:\Program Files (x86)\Corel\CUH\v2\CUH.exe [3774160 2021-01-21] (Corel Corporation -> Corel Corporation) Task: {C7E6C2E6-6BF7-4039-A6BA-2BF7A1B49301} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [21976976 2021-09-25] (Microsoft Corporation -> Microsoft Corporation) Task: {E9DCACCD-0848-4B9E-A4DE-A898FD27E7E7} - System32\Tasks\Opera scheduled Autoupdate 1604680915 => C:\Users\cleme\AppData\Local\Programs\Opera\launcher.exe (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{3c5a3ade-9732-47d2-bd96-7d618b9f33b4}: [DhcpNameServer] 40.40.1.14 Tcpip\..\Interfaces\{ab30c3e6-ef36-4da3-8670-33886ea6dcb1}: [DhcpNameServer] 192.168.1.1 Edge: ======= Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)] Edge Extension: (Pas de nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [non trouvé(e)] Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)] Edge Extension: (Pas de nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [non trouvé(e)] Edge Profile: C:\Users\cleme\AppData\Local\Microsoft\Edge\User Data\Default [2021-10-10] Edge HKLM-x32\...\Edge\Extension: [ihcjicgdanjaechkgeegckofjjedodee] FireFox: ======== FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-05-30] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2021-05-30] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation) Chrome: ======= CHR Profile: C:\Users\cleme\AppData\Local\Google\Chrome\User Data\Default [2021-10-10] CHR Notifications: Default -> hxxps://meet.google.com CHR StartupUrls: Default -> "hxxps://www.google.com/" CHR Extension: (Slides) - C:\Users\cleme\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-06-10] CHR Extension: (Magic Actions for YouTube™) - C:\Users\cleme\AppData\Local\Google\Chrome\User Data\Default\Extensions\abjcfabbhafbcdfjoecdgepllmpfceif [2021-05-02] CHR Extension: (Theme Creator) - C:\Users\cleme\AppData\Local\Google\Chrome\User Data\Default\Extensions\akpelnjfckgfiplcikojhomllgombffc [2020-06-10] CHR Extension: (Docs) - C:\Users\cleme\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-06-10] CHR Extension: (Google Drive) - C:\Users\cleme\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-23] CHR Extension: (YouTube) - C:\Users\cleme\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-06-10] CHR Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\cleme\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2021-09-01] CHR Extension: (uBlock Origin) - C:\Users\cleme\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2021-10-03] CHR Extension: (Dark Theme v3) - C:\Users\cleme\AppData\Local\Google\Chrome\User Data\Default\Extensions\djlgdeklopcjagknhlchbdjekgpgenad [2020-06-10] CHR Extension: (wanteeed) - C:\Users\cleme\AppData\Local\Google\Chrome\User Data\Default\Extensions\emnoomldgleagdjapdeckpmebokijail [2021-09-17] CHR Extension: (Sheets) - C:\Users\cleme\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-06-10] CHR Extension: (Google Docs hors connexion) - C:\Users\cleme\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-09-21] CHR Extension: (Windscribe - Free Proxy and Ad Blocker) - C:\Users\cleme\AppData\Local\Google\Chrome\User Data\Default\Extensions\hnmpcagpplmpfojmgmnngilcnanddlhb [2021-09-12] CHR Extension: (Malwarebytes Browser Guard) - C:\Users\cleme\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2021-10-09] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\cleme\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29] CHR Extension: (Gmail) - C:\Users\cleme\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-23] CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee] Opera: ======= OPR Profile: C:\Users\cleme\AppData\Roaming\Opera Software\Opera Stable [2021-10-10] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9250696 2021-10-01] (Microsoft Corporation -> Microsoft Corporation) R2 DolbyDAXAPI; C:\WINDOWS\system32\dolbyaposvc\DAX3API.exe [1641416 2019-05-07] (Dolby Laboratories, Inc. -> ) S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\21.180.0905.0007\FileSyncHelper.exe [3249520 2021-10-05] (Microsoft Corporation -> Microsoft Corporation) R2 FMAPOService; C:\WINDOWS\System32\FMService64.exe [360320 2019-09-05] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [236864 2021-06-03] (Huawei Technologies Co., Ltd. -> ) R2 Huawei_OSDServer; C:\Windows\system32\RPC\OSD\osdservice.exe [217072 2019-08-16] (Huawei Technologies Co., Ltd. -> ) S2 LCD_Service; C:\Program Files\Huawei\HwLcdEnhancement\LCD_Service.exe [25584 2020-01-10] (Huawei Technologies Co., Ltd. -> Microsoft) R2 MBAMainService; C:\Program Files\Huawei\PCManager\MateBookService.exe [1005040 2020-01-10] (Huawei Technologies Co., Ltd. -> ) S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\21.180.0905.0007\OneDriveUpdaterService.exe [3718016 2021-10-05] (Microsoft Corporation -> Microsoft Corporation) R2 PSI_SVC_2; c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [277360 2014-04-30] (Arvato Digital Services Canada Inc -> arvato digital services llc) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2109.6-0\NisSrv.exe [2855512 2021-10-06] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2109.6-0\MsMpEng.exe [128392 2021-10-06] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 ampa; C:\WINDOWS\system32\ampa.sys [38320 2017-02-28] (CHENGDU AOMEI Tech Co., Ltd. -> ) S3 ddmdrv; C:\WINDOWS\system32\ddmdrv.sys [35760 2016-12-27] (CHENGDU AOMEI Tech Co., Ltd. -> ) R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2020-11-06] (AVB Disc Soft, SIA -> Disc Soft Ltd) R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [59360 2020-11-06] (AVB Disc Soft, SIA -> Disc Soft Ltd) S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2020-08-17] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) R3 hwnetstat; C:\Program Files\Huawei\PCManager\WFPDriver.sys [30744 2020-01-10] (Huawei Technologies Co., Ltd. -> ) U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2021-06-03] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) R3 MpKsle9882a67; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6CE0C7B7-2E7B-4498-9378-1500D80550CB}\MpKslDrv.sys [130272 2021-10-10] (Microsoft Windows -> Microsoft Corporation) S3 PVUSB; C:\WINDOWS\System32\drivers\CESG64.sys [63808 2007-02-19] (CASIO COMPUTER CO.,LTD. -> CASIO COMPUTER CO.,LTD.) S3 tapprotonvpn; C:\WINDOWS\System32\drivers\tapprotonvpn.sys [49024 2021-05-28] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [48520 2021-10-06] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [434424 2021-10-06] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [86264 2021-10-06] (Microsoft Windows -> Microsoft Corporation) U3 avgbdisk; pas de ImagePath ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-10-10 03:42 - 2021-10-10 03:42 - 095682560 _____ C:\WINDOWS\system32\config\SOFTWARE 2021-10-10 01:55 - 2021-10-10 02:45 - 000021055 _____ C:\Users\cleme\Desktop\FRST.txt 2021-10-10 01:44 - 2021-10-10 01:44 - 000000008 __RSH C:\ProgramData\ntuser.pol 2021-10-10 01:35 - 2021-10-10 03:41 - 000000000 ____D C:\WINDOWS\Microsoft Antimalware 2021-10-10 01:29 - 2021-10-10 01:29 - 000001086 _____ C:\Users\Public\Desktop\Revo Uninstaller.lnk 2021-10-10 01:29 - 2021-10-10 01:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller 2021-10-10 01:29 - 2021-10-10 01:29 - 000000000 ____D C:\Program Files\VS Revo Group 2021-10-10 01:29 - 2021-10-10 01:28 - 007510656 _____ (VS Revo Group ) C:\Users\cleme\Desktop\revosetup-2.2.8.exe 2021-10-10 01:28 - 2021-10-10 01:28 - 007510656 _____ (VS Revo Group ) C:\Users\cleme\Downloads\revosetup-2.2.8.exe 2021-10-10 00:10 - 2021-10-10 00:10 - 036181616 _____ (Piriform Software Ltd) C:\Users\cleme\Downloads\ccsetup585.exe 2021-10-09 23:33 - 2021-10-09 23:33 - 000054385 _____ C:\Users\cleme\Desktop\Shortcut.txt 2021-10-09 23:27 - 2021-10-10 02:45 - 000000000 ____D C:\FRST 2021-10-09 23:27 - 2021-10-09 23:28 - 000023892 _____ C:\Users\cleme\Downloads\FRST.txt 2021-10-09 23:26 - 2021-10-09 23:26 - 002310144 _____ (Farbar) C:\Users\cleme\Desktop\FRST64.exe 2021-10-09 22:23 - 2021-10-09 22:23 - 002101944 _____ (Malwarebytes) C:\Users\cleme\Downloads\MBSetup.exe 2021-10-08 18:17 - 2021-10-08 18:17 - 000002119 _____ C:\Users\Public\Desktop\MindView 8.0.lnk 2021-10-08 18:17 - 2021-10-08 18:17 - 000000000 ____D C:\Users\cleme\AppData\Roaming\MatchWare 2021-10-08 18:17 - 2021-10-08 18:17 - 000000000 ____D C:\ProgramData\Caphyon 2021-10-08 18:16 - 2021-10-08 18:17 - 000000000 ____D C:\Users\cleme\AppData\Local\MatchWare 2021-10-08 18:16 - 2021-10-08 18:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MindView 8.0 2021-10-08 18:16 - 2021-10-08 18:16 - 000000000 ____D C:\Program Files\MatchWare 2021-10-08 18:03 - 2021-10-08 18:09 - 362256280 _____ (MatchWare) C:\Users\cleme\Downloads\mindview8_b25177.exe 2021-10-08 15:19 - 2021-10-08 15:23 - 035518933 _____ C:\Users\cleme\Downloads\CorelDRAW Graphics Suite 2021 Downloading installation with 100% Cracked.mp4 2021-10-08 15:15 - 2021-10-08 15:15 - 001993632 _____ (Corel Corporation) C:\Users\cleme\Downloads\CorelDRAW_Graphics_Suite_2021_seo.exe 2021-10-05 10:27 - 2021-10-05 10:27 - 000807861 _____ C:\Users\cleme\Downloads\Recap S1 Bontinck Clément.pdf 2021-10-02 20:09 - 2021-10-02 20:09 - 000001404 _____ C:\Users\cleme\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Outlook.lnk 2021-09-30 21:51 - 2021-09-30 21:51 - 000025455 _____ C:\Users\cleme\Downloads\test.xlsx 2021-09-27 21:19 - 2021-09-27 21:19 - 000023708 _____ C:\Users\cleme\Downloads\bulletin-de-paie-septembre-2021.pdf 2021-09-26 13:22 - 2021-09-26 13:22 - 000807861 _____ C:\Users\cleme\Desktop\Recap S1 Bontinck Clément.pdf 2021-09-23 19:55 - 2021-09-23 19:55 - 000002479 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk 2021-09-23 19:55 - 2021-09-23 19:55 - 000002479 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk 2021-09-23 19:55 - 2021-09-23 19:55 - 000002462 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk 2021-09-23 19:55 - 2021-09-23 19:55 - 000002452 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk 2021-09-23 19:55 - 2021-09-23 19:55 - 000002452 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk 2021-09-23 19:55 - 2021-09-23 19:55 - 000002440 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk 2021-09-23 19:55 - 2021-09-23 19:55 - 000002402 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk 2021-09-23 19:55 - 2021-09-23 19:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office 2021-09-22 23:09 - 2021-10-10 02:42 - 000008192 ___SH C:\DumpStack.log.tmp 2021-09-22 23:07 - 2021-09-22 23:07 - 000001152 _____ C:\WINDOWS\GA_NT.dat 2021-09-22 23:07 - 2021-09-22 23:07 - 000000000 ___HD C:\Aomei 2021-09-22 23:05 - 2021-10-10 00:36 - 000000000 ____D C:\Program Files\Microsoft OneDrive 2021-09-22 18:34 - 2021-09-23 00:08 - 000001024 ____H C:\AMTAG.BIN 2021-09-22 18:34 - 2021-09-22 23:07 - 000000000 ____D C:\Program Files (x86)\AOMEI Partition Assistant 2021-09-22 18:34 - 2021-09-22 18:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Partition Assistant 2021-09-22 18:34 - 2021-09-22 18:34 - 000000000 ____D C:\ProgramData\AomeiBR 2021-09-22 18:34 - 2021-07-26 10:35 - 002201648 _____ C:\WINDOWS\ampa.exe 2021-09-22 18:34 - 2020-12-22 14:58 - 001305680 _____ C:\WINDOWS\ddmmain.exe 2021-09-22 18:34 - 2017-02-28 14:20 - 000038320 _____ C:\WINDOWS\SysWOW64\ampa.sys 2021-09-22 18:34 - 2017-02-28 14:20 - 000038320 _____ C:\WINDOWS\system32\ampa.sys 2021-09-22 18:34 - 2016-12-27 18:45 - 000035760 _____ C:\WINDOWS\system32\ddmdrv.sys 2021-09-22 18:33 - 2021-09-22 18:34 - 033937240 _____ (AOMEI International Network Limited. ) C:\Users\cleme\Downloads\PAssist_Std.exe 2021-09-22 18:28 - 2021-09-22 18:30 - 000000000 ____D C:\Users\cleme\Desktop\Framatome Jeumont 2021-09-22 17:52 - 2021-09-22 17:52 - 001882794 _____ C:\Users\cleme\Downloads\05-Visuel carte génération HDF (1).pdf 2021-09-18 14:33 - 2021-09-18 14:33 - 001593591 _____ C:\Users\cleme\Downloads\PLAQUETTE_CFDT_JEUMONT.pdf 2021-09-18 14:33 - 2021-09-18 14:33 - 000883124 _____ C:\Users\cleme\Downloads\Avis_CSE_sur_projet_CSP_Paie_et_administration_CSE_du_26_Janv_21.pdf 2021-09-18 10:45 - 2021-10-02 12:24 - 000000000 ____D C:\Users\cleme\Desktop\Rapport de Stage 2021-09-17 11:46 - 2021-09-17 11:46 - 001606587 _____ C:\Users\cleme\Downloads\2_crash_corrige.pdf 2021-09-16 19:41 - 2021-09-16 19:41 - 002295296 _____ (Digimarc) C:\WINDOWS\system32\DMRCDecoder.dll 2021-09-16 19:41 - 2021-09-16 19:41 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll 2021-09-16 19:41 - 2021-09-16 19:41 - 002111488 _____ (Digimarc) C:\WINDOWS\SysWOW64\DMRCDecoder.dll 2021-09-16 19:41 - 2021-09-16 19:41 - 001823304 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2021-09-16 19:41 - 2021-09-16 19:41 - 001393480 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2021-09-16 19:41 - 2021-09-16 19:41 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll 2021-09-16 19:41 - 2021-09-16 19:41 - 001313608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2021-09-16 19:41 - 2021-09-16 19:41 - 001164288 _____ C:\WINDOWS\system32\MBR2GPT.EXE 2021-09-16 19:41 - 2021-09-16 19:41 - 000672768 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll 2021-09-16 19:41 - 2021-09-16 19:41 - 000570368 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2021-09-16 19:41 - 2021-09-16 19:41 - 000452096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2021-09-16 19:41 - 2021-09-16 19:41 - 000426496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv 2021-09-16 19:41 - 2021-09-16 19:41 - 000223744 _____ C:\WINDOWS\SysWOW64\TpmTool.exe 2021-09-16 19:41 - 2021-09-16 19:41 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshom.ocx 2021-09-16 19:41 - 2021-09-16 19:41 - 000122880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshom.ocx 2021-09-16 19:41 - 2021-09-16 19:41 - 000098816 _____ C:\WINDOWS\system32\Drivers\cimfs.sys 2021-09-16 19:41 - 2021-09-16 19:41 - 000011355 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2021-09-16 19:40 - 2021-09-16 19:40 - 000566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2021-09-16 19:40 - 2021-09-16 19:40 - 000272384 _____ C:\WINDOWS\system32\TpmTool.exe 2021-09-16 19:40 - 2021-09-16 19:40 - 000162816 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe 2021-09-16 19:33 - 2021-09-16 19:33 - 000000000 ___HD C:\$WinREAgent 2021-09-14 11:01 - 2021-09-14 11:01 - 014003179 _____ C:\Users\cleme\Downloads\documentsalternants.zip 2021-09-12 22:21 - 2021-09-12 22:23 - 000000000 ____D C:\Users\cleme\AppData\Roaming\Proton Technologies AG 2021-09-12 22:21 - 2021-09-12 22:23 - 000000000 ____D C:\Program Files (x86)\Proton Technologies 2021-09-12 22:21 - 2021-09-12 22:21 - 000000000 ____D C:\Users\cleme\AppData\Local\ToastNotificationManagerCompat 2021-09-12 22:20 - 2021-09-12 22:20 - 024023256 _____ (Proton Technologies AG) C:\Users\cleme\Downloads\ProtonVPN_win_v1.22.2.exe 2021-09-11 13:28 - 2021-09-11 13:28 - 000000000 ____D C:\Users\cleme\Documents\Modèles Office personnalisés 2021-09-11 12:15 - 2021-09-11 12:15 - 000806975 _____ C:\Users\cleme\Downloads\page-de-garde-A.pdf 2021-09-11 11:55 - 2021-09-11 11:55 - 000000000 ____D C:\Users\cleme\Documents\Working Files 2021-09-11 11:04 - 2021-09-11 11:04 - 000000000 ____D C:\Users\cleme\Documents\Corel Cloud 2021-09-11 10:52 - 2021-09-11 10:52 - 000000000 ____D C:\Users\cleme\Documents\Corel 2021-09-11 10:48 - 2021-10-09 19:20 - 000003458 _____ C:\WINDOWS\system32\Tasks\CorelUpdateHelperTask-741C9A521AE99028C68B3D550F59CB50 2021-09-11 10:48 - 2021-09-11 10:48 - 000003458 _____ C:\WINDOWS\system32\Tasks\CorelUpdateHelperTaskCore 2021-09-11 10:48 - 2021-09-11 10:48 - 000000000 ____D C:\Program Files (x86)\gs 2021-09-11 10:48 - 2021-09-11 10:48 - 000000000 ____D C:\Program Files (x86)\Corel 2021-09-11 10:47 - 2021-09-11 10:47 - 000000000 ____D C:\Program Files\Common Files\Corel 2021-09-11 10:46 - 2021-09-11 10:48 - 000000000 ____D C:\ProgramData\Corel 2021-09-11 10:46 - 2021-09-11 10:48 - 000000000 ____D C:\Program Files\Corel 2021-09-11 10:46 - 2021-09-11 10:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CorelDRAW Graphics Suite 2021 (64-Bit) 2021-09-11 10:39 - 2021-09-11 10:45 - 394969249 _____ C:\Users\cleme\Downloads\CorelDRAWGraphicsSuite2021Installer_fr.zip 2021-09-11 10:39 - 2021-09-11 10:39 - 002002917 _____ C:\Users\cleme\Downloads\CorelDraw 2021 Crack.zip 2021-09-11 10:39 - 2021-09-11 10:39 - 000000000 ____D C:\ProgramData\UniqueId 2021-09-11 10:38 - 2021-09-11 10:38 - 001993688 _____ (Corel Corporation) C:\Users\cleme\Downloads\CDGS2021.exe 2021-09-11 10:30 - 2021-09-11 10:52 - 000000000 ____D C:\Users\cleme\AppData\Roaming\Corel 2021-09-11 10:29 - 2021-09-11 10:29 - 000000000 ____D C:\Program Files (x86)\InstallShield Installation Information 2021-09-10 23:43 - 2021-09-10 23:43 - 004507009 _____ C:\Users\cleme\Downloads\Lessentiel.pdf 2021-09-10 23:07 - 2021-09-10 23:07 - 000000000 ____D C:\Users\cleme\Documents\Blocs-notes OneNote 2021-09-10 22:53 - 2021-10-05 19:14 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task 2021-09-10 22:53 - 2021-10-05 19:14 - 000002177 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-09-10 22:53 - 2021-09-10 22:53 - 000000000 ___RD C:\Users\Default\OneDrive 2021-09-10 15:35 - 2021-09-11 09:44 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2021-09-10 15:35 - 2021-09-10 15:35 - 000000000 ____D C:\Users\cleme\AppData\Local\Microsoft Help ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-10-10 02:44 - 2020-06-10 15:25 - 000000000 ____D C:\Program Files (x86)\Google 2021-10-10 02:42 - 2021-05-18 23:31 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2021-10-10 02:42 - 2020-06-10 16:29 - 000000000 ____D C:\ProgramData\HwSynergy 2021-10-10 02:42 - 2020-03-16 16:51 - 000000000 ___RD C:\Users\cleme\OneDrive 2021-10-10 02:42 - 2020-03-16 16:00 - 000000134 _____ C:\WINDOWS\system32\regtest.txt 2021-10-10 02:42 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState 2021-10-10 02:42 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-10-10 02:36 - 2021-05-18 23:32 - 000000000 ____D C:\Users\cleme\AppData\Local\D3DSCache 2021-10-10 02:36 - 2020-03-16 16:58 - 000000000 ____D C:\ProgramData\Goodix 2021-10-10 02:36 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2021-10-10 02:34 - 2021-05-18 23:25 - 000527496 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2021-10-10 02:31 - 2020-06-10 16:29 - 000000000 ____D C:\Users\cleme\AppData\Roaming\HwSynergy 2021-10-10 02:30 - 2020-10-12 21:13 - 000000000 ____D C:\Program Files\Common Files\SOLIDWORKS Shared 2021-10-10 02:23 - 2020-10-12 19:15 - 000000000 ____D C:\Users\cleme\Documents\SOLIDWORKS Downloads 2021-10-10 01:49 - 2021-05-19 14:48 - 001770906 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2021-10-10 01:49 - 2019-12-07 16:49 - 000792842 _____ C:\WINDOWS\system32\perfh00C.dat 2021-10-10 01:49 - 2019-12-07 16:49 - 000149972 _____ C:\WINDOWS\system32\perfc00C.dat 2021-10-10 01:49 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF 2021-10-10 01:43 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy 2021-10-10 01:43 - 2019-03-19 06:52 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy 2021-10-10 01:30 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2021-10-10 01:30 - 2019-12-07 11:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2021-10-10 01:04 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2021-10-10 01:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2021-10-10 00:36 - 2020-11-06 21:38 - 000000000 ____D C:\ProgramData\AVG 2021-10-10 00:34 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2021-10-10 00:28 - 2020-06-10 19:28 - 000000000 ____D C:\Users\cleme\AppData\Roaming\discord 2021-10-10 00:16 - 2020-11-06 21:36 - 000000000 ____D C:\Users\cleme\AppData\Local\CrashDumps 2021-10-10 00:16 - 2020-06-11 13:29 - 000000000 ____D C:\Program Files (x86)\Steam 2021-10-09 23:47 - 2020-06-10 19:35 - 000000000 ____D C:\Users\cleme\AppData\Local\Spotify 2021-10-09 23:47 - 2020-06-10 19:28 - 000000000 ____D C:\Users\cleme\AppData\Local\Discord 2021-10-09 23:46 - 2020-06-10 19:33 - 000000000 ____D C:\Users\cleme\AppData\Roaming\Spotify 2021-10-09 22:25 - 2021-05-23 10:34 - 000000000 ____D C:\Users\cleme\AppData\Roaming\Blitz 2021-10-09 20:18 - 2021-05-18 23:25 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2021-10-09 12:20 - 2019-12-11 02:55 - 000000000 ____D C:\Program Files\Microsoft Office 2021-10-08 17:51 - 2020-12-28 14:44 - 000000000 ____D C:\Users\cleme\AppData\Local\Windows Live 2021-10-06 18:58 - 2019-12-11 02:43 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2021-10-06 15:01 - 2020-06-10 19:47 - 000000000 ____D C:\Users\cleme\Desktop\♠ 2021-10-06 14:09 - 2020-10-10 12:07 - 000000000 ____D C:\Users\cleme\Desktop\Cours 2021-10-05 19:49 - 2020-03-16 16:49 - 000000000 ____D C:\Users\cleme\AppData\Local\Packages 2021-10-03 11:13 - 2020-06-10 15:22 - 000002449 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-10-02 09:49 - 2021-06-30 19:16 - 000003540 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d74c2caf5eb39e 2021-10-02 09:49 - 2021-05-18 23:31 - 000003634 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-10-01 21:33 - 2021-05-18 23:31 - 000003590 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2021-10-01 21:33 - 2021-05-18 23:31 - 000003466 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2021-09-19 21:17 - 2020-06-15 08:59 - 000000000 ____D C:\WINDOWS\system32\MRT 2021-09-19 21:15 - 2020-06-15 08:59 - 135637312 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2021-09-19 21:06 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2021-09-19 21:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2021-09-19 21:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2021-09-19 21:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2021-09-19 21:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources 2021-09-19 21:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2021-09-19 21:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2021-09-19 21:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2021-09-19 21:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\migwiz 2021-09-19 21:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2021-09-19 21:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\DDFs 2021-09-19 21:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\appraiser 2021-09-19 21:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellComponents 2021-09-19 21:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning 2021-09-19 21:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2021-09-19 21:06 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing 2021-09-16 19:44 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2021-09-11 12:26 - 2020-06-10 15:59 - 000000000 ____D C:\Users\cleme\AppData\Local\NBClipboard 2021-09-11 10:48 - 2020-06-14 10:43 - 000000000 ____D C:\ProgramData\Package Cache 2021-09-11 10:28 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\Downloaded Program Files 2021-09-11 10:14 - 2020-03-16 16:51 - 000000000 ____D C:\Users\cleme\AppData\Local\PlaceholderTileLogoFolder 2021-09-11 09:55 - 2021-04-09 08:07 - 000000000 ____D C:\Users\cleme\AppData\Roaming\Zoom 2021-09-11 09:44 - 2021-05-19 00:07 - 000000000 ____D C:\Program Files (x86)\MSBuild 2021-09-11 09:43 - 2019-03-19 06:49 - 000000076 _____ C:\WINDOWS\win.ini 2021-09-11 09:42 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2021-09-10 22:58 - 2021-04-15 14:29 - 000000000 ____D C:\Program Files\Badlion Client 2021-09-10 22:53 - 2020-06-10 16:28 - 000000000 ___RD C:\Users\Administrateur\OneDrive ==================== Fichiers à la racine de certains dossiers ======== 2021-05-23 10:35 - 2021-07-20 22:28 - 000000032 _____ () C:\Users\cleme\AppData\Roaming\.machineId ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================