Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 02-11-2021 Exécuté par Jean-francois louvet (administrateur) sur JEAN-FRANCOISLO (Acer Aspire M5-581TG) (04-11-2021 12:51:47) Exécuté depuis C:\Users\Jean-francois louvet.Jean-francoislo\Downloads Profils chargés: Jean-francois louvet Plate-forme: Microsoft Windows 10 Famille Version 21H1 19043.1288 (X64) Langue: Français (France) Navigateur par défaut: Chrome Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Apple Inc. -> Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe (Apple Inc. -> Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc. -> Apple, Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\secd.exe (Broadcom Corporation -> Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe (Google Inc (TEST) -> VLCStreamer LTD.) [Fichier non signé] C:\Program Files (x86)\VLCStreamer\Update\VLCStreamerUpdate.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <20> (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe <3> (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxTray.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <22> (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Windows -> Microsoft Corporation) C:\Program Files\Internet Explorer\ielowutil.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.1220_none_7e21bc567c7ed16b\TiWorker.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\NisSrv.exe (TomTom International BV -> TomTom) C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13653208 2016-09-23] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688 2016-09-23] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3242696 2015-10-07] (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [337720 2020-11-12] (Apple Inc. -> Apple Inc.) HKU\S-1-5-21-2553518390-952383439-3924699205-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2020-09-08] (Apple Inc. -> Apple Inc.) HKU\S-1-5-21-2553518390-952383439-3924699205-1001\...\Run: [iCloudDrive] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe [110392 2020-09-08] (Apple Inc. -> Apple Inc.) HKLM\...\Windows x64\Print Processors\hpcpp190: C:\Windows\System32\spool\prtprocs\x64\hpcpp190.dll [651176 2016-08-26] (HP Inc. -> HP Inc.) HKLM\...\Print\Monitors\HP Universal Print Monitor: C:\WINDOWS\system32\HPMPW081.DLL [127912 2016-08-26] (HP Inc. -> HP Inc.) HKLM\...\Print\Monitors\HPMLM190: C:\WINDOWS\system32\hpmlm190.dll [310512 2016-08-26] (HP Inc. -> HP Inc.) HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\94.0.4606.81\Installer\chrmstp.exe [2021-10-21] (Google LLC -> Google LLC) Lsa: [Notification Packages] scecli C:\Program Files\WIDCOMM\Bluetooth Software\BtwProximityCP.dll ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {0246BCD3-60C9-485D-9399-4C4774E866B4} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MpCmdRun.exe [901056 2021-11-03] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {0B0A4F17-9D69-4574-83FB-482E32D22919} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-08-29] (Google LLC -> Google LLC) Task: {42B285AE-5F91-4812-A209-126F256D0E20} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MpCmdRun.exe [901056 2021-11-03] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {607A1FAF-D2B6-49D7-BCB7-783F9AE10AF2} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MpCmdRun.exe [901056 2021-11-03] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {915CD7A3-FB90-4C31-AC30-3ED08BE6C8E3} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616832 2019-09-04] (Apple Inc. -> Apple Inc.) Task: {92A4CE20-1A52-43C0-B38D-B0B90AF9227D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-08-29] (Google LLC -> Google LLC) Task: {960D7E0A-8F08-4554-AEB4-3C2209290465} - System32\Tasks\Apple Diagnostics => C:\Program Files (x86)\Common Files\Apple\Internet Services\EReporter.exe [67896 2020-09-08] (Apple Inc. -> Apple Inc.) Task: {D6A6F239-F773-46FA-A5AF-DB739F9C3BE0} - System32\Tasks\VLCStreamerUpdateTaskMachineCore => C:\Program Files (x86)\VLCStreamer\Update\VLCStreamerUpdate.exe [108696 2019-06-12] (Google Inc (TEST) -> VLCStreamer LTD.) [Fichier non signé] <==== ATTENTION Task: {DAAF95F5-96A7-477F-BA0E-8F0E8DFC06FF} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MpCmdRun.exe [901056 2021-11-03] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {DC860BA7-2BB6-488F-A665-F57D64F1D11B} - System32\Tasks\VLCStreamerUpdateTaskMachineUA => C:\Program Files (x86)\VLCStreamer\Update\VLCStreamerUpdate.exe [108696 2019-06-12] (Google Inc (TEST) -> VLCStreamer LTD.) [Fichier non signé] <==== ATTENTION (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.) Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{17f1879c-40e3-43d1-b1ce-87976414479b}: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{3c257081-82f4-45bb-aa52-5a911ad0f2b9}: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{a99449d2-be5b-41b8-84d9-a69b6552ae68}: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{d2cd8047-f5ea-423f-b6b3-96f90d7b33f3}: [DhcpNameServer] 172.20.10.1 Tcpip\..\Interfaces\{ddade6bf-8964-4dae-8e0f-4d20b1fc9749}: [DhcpNameServer] 192.168.1.1 Edge: ======= DownloadDir: C:\Users\Jean-francois louvet.Jean-francoislo\Downloads Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)] Edge Extension: (Pas de nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [non trouvé(e)] Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)] Edge Extension: (Pas de nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [non trouvé(e)] Edge Profile: C:\Users\Jean-francois louvet.Jean-francoislo\AppData\Local\Microsoft\Edge\User Data\Default [2021-11-04] Edge Notifications: Default -> hxxps://www.cnetfrance.fr; hxxps://www.facebook.com FireFox: ======== FF DefaultProfile: 6dgva338.default FF ProfilePath: C:\Users\Jean-francois louvet.Jean-francoislo\AppData\Roaming\TomTom\HOME\Profiles\loiny4xl.default [2019-03-19] FF Extension: (RenaultTheme) - C:\Users\Jean-francois louvet.Jean-francoislo\AppData\Roaming\TomTom\HOME\Profiles\loiny4xl.default\Extensions\RenaultTheme@tomtom.com [2019-03-19] [] [non signé] FF Extension: (Map status indicator) - C:\Program Files (x86)\TomTom HOME 2\xul\extensions\MapShare-status@tomtom.com [2019-03-19] [] [non signé] FF ProfilePath: C:\Users\Jean-francois louvet.Jean-francoislo\AppData\Roaming\Mozilla\Firefox\Profiles\6dgva338.default [2020-11-23] FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @vlcstreamer.com/VLCStreamer Update;version=3 -> C:\Program Files (x86)\VLCStreamer\Update\1.3.99.0\npVLCStreamerUpdate3.dll [2019-06-12] (Google Inc (TEST) -> VLCStreamer LTD.) [Fichier non signé] FF Plugin-x32: @vlcstreamer.com/VLCStreamer Update;version=9 -> C:\Program Files (x86)\VLCStreamer\Update\1.3.99.0\npVLCStreamerUpdate3.dll [2019-06-12] (Google Inc (TEST) -> VLCStreamer LTD.) [Fichier non signé] FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-08-17] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-2553518390-952383439-3924699205-1001: @zoom.us/ZoomVideoPlugin -> C:\Users\Jean-francois louvet.Jean-francoislo\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2020-04-18] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) Chrome: ======= CHR Profile: C:\Users\Jean-francois louvet.Jean-francoislo\AppData\Local\Google\Chrome\User Data\Default [2021-11-04] CHR Notifications: Default -> hxxps://badoo.com; hxxps://chat-message.live; hxxps://club-conso.fr; hxxps://contenus.elle.fr; hxxps://domahi.com; hxxps://fr.shopping.rakuten.com; hxxps://french-stream.at; hxxps://hotmovs.com; hxxps://myclickpush.com; hxxps://myrugby.lnr.fr; hxxps://pornclassic.tube; hxxps://pornone.com; hxxps://push-dhijbdb-3504.pushails.com; hxxps://sexxx.ooo; hxxps://super-dealsfr.online; hxxps://upornia.com; hxxps://vk.com; hxxps://wiflix-stream.com; hxxps://www.cnetfrance.fr; hxxps://www.elle.fr; hxxps://www.facebook.com; hxxps://www.futura-ope.com; hxxps://www.gala.fr; hxxps://www.geo.fr; hxxps://www.la-galerie.com; hxxps://www.lemonde.fr; hxxps://www.maty.com; hxxps://www.programme-television.org; hxxps://www.public.fr; hxxps://www.santemagazine.fr; hxxps://www.voici.fr; hxxps://www.youtube.com CHR HomePage: Default -> qwant.com CHR Extension: (Slides) - C:\Users\Jean-francois louvet.Jean-francoislo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-08-29] CHR Extension: (Docs) - C:\Users\Jean-francois louvet.Jean-francoislo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-08-29] CHR Extension: (Google Drive) - C:\Users\Jean-francois louvet.Jean-francoislo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-31] CHR Extension: (YouTube) - C:\Users\Jean-francois louvet.Jean-francoislo\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-08-29] CHR Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\Jean-francois louvet.Jean-francoislo\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2021-09-09] CHR Extension: (Sheets) - C:\Users\Jean-francois louvet.Jean-francoislo\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-08-29] CHR Extension: (Signets iCloud) - C:\Users\Jean-francois louvet.Jean-francoislo\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkepacicchenbjecpbpbclokcabebhah [2020-08-29] CHR Extension: (HTTPS partout) - C:\Users\Jean-francois louvet.Jean-francoislo\AppData\Local\Google\Chrome\User Data\Default\Extensions\gcbommkclmclpchllfjekcdonpmejbdp [2021-08-07] CHR Extension: (Google Docs hors connexion) - C:\Users\Jean-francois louvet.Jean-francoislo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-11-03] CHR Extension: (AdBlock — le meilleur bloqueur de pubs) - C:\Users\Jean-francois louvet.Jean-francoislo\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2021-09-09] CHR Extension: (Qwant) - C:\Users\Jean-francois louvet.Jean-francoislo\AppData\Local\Google\Chrome\User Data\Default\Extensions\hnlkiofnhhoahaiimdicppgemmmomijo [2020-12-20] CHR Extension: (Стартовая — Яндекс) - C:\Users\Jean-francois louvet.Jean-francoislo\AppData\Local\Google\Chrome\User Data\Default\Extensions\lalfiodohdgaejjccfgfmmngggpplmhp [2020-08-29] CHR Extension: (TV pour Google Chrome ™) - C:\Users\Jean-francois louvet.Jean-francoislo\AppData\Local\Google\Chrome\User Data\Default\Extensions\licccgnfdlgmmmgaddmbcepikfadcmpe [2020-08-29] CHR Extension: (Keepa - Amazon Price Tracker) - C:\Users\Jean-francois louvet.Jean-francoislo\AppData\Local\Google\Chrome\User Data\Default\Extensions\neebplgakaahbhdphmkckjjcegoiijjo [2021-11-03] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Jean-francois louvet.Jean-francoislo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-02] CHR Extension: (Youtube™ Ad Blocker) - C:\Users\Jean-francois louvet.Jean-francoislo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocjldjbjjlmejdekjefcpggnkiinfjih [2021-08-04] CHR Extension: (Easy Wiki) - C:\Users\Jean-francois louvet.Jean-francoislo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogmnamoknekfkadaaaiolejililenncn [2021-03-28] CHR Extension: (Gmail) - C:\Users\Jean-francois louvet.Jean-francoislo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-31] CHR Extension: (Download une image) - C:\Users\Jean-francois louvet.Jean-francoislo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkkboomagahhdmhndlkfeeplhpdaidgl [2020-08-29] Brave: ======= BRA Profile: C:\Users\Jean-francois louvet.Jean-francoislo\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2020-12-14] BRA Extension: (Brave SpeedReader Updater) - C:\Users\Jean-francois louvet.Jean-francoislo\AppData\Local\BraveSoftware\Brave-Browser\User Data\jicbkmdloagakknpihibphagfckhjdih [2020-12-14] BRA Extension: (Brave NTP sponsored images) - C:\Users\Jean-francois louvet.Jean-francoislo\AppData\Local\BraveSoftware\Brave-Browser\User Data\lcenblphbmngnohghkhpojmpflebkcpd [2020-12-14] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169544 2020-07-08] (Adobe Inc. -> Adobe Inc.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [96056 2020-09-24] (Apple Inc. -> Apple Inc.) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7456464 2020-12-14] (Malwarebytes Inc -> Malwarebytes) S2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [50688 2016-06-15] (HP Inc.) [Fichier non signé] S2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [66048 2016-06-15] (HP Inc.) [Fichier non signé] S2 vs; C:\Program Files (x86)\VLCStreamer\Update\VLCStreamerUpdate.exe [108696 2019-06-12] (Google Inc (TEST) -> VLCStreamer LTD.) [Fichier non signé] S3 vsm; C:\Program Files (x86)\VLCStreamer\Update\VLCStreamerUpdate.exe [108696 2019-06-12] (Google Inc (TEST) -> VLCStreamer LTD.) [Fichier non signé] R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\NisSrv.exe [2872024 2021-11-03] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MsMpEng.exe [128376 2021-11-03] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [141512 2018-09-04] (ESET, spol. s r.o. -> ESET) R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [109232 2018-09-04] (ESET, spol. s r.o. -> ESET) S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [15872 2018-09-04] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET) S1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [188824 2018-09-04] (ESET, spol. s r.o. -> ESET) R2 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [50144 2018-09-04] (ESET, spol. s r.o. -> ESET) R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [82304 2018-09-04] (ESET, spol. s r.o. -> ESET) R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [109864 2018-09-04] (ESET, spol. s r.o. -> ESET) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [210344 2021-10-20] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [19912 2020-12-14] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248992 2021-09-09] (Malwarebytes Inc -> Malwarebytes) R3 MpKsle6308fe3; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9A927297-3D09-4EB2-96CF-A4859B641C82}\MpKslDrv.sys [130296 2021-11-03] (Microsoft Windows -> Microsoft Corporation) S3 mvusbews; C:\WINDOWS\System32\Drivers\mvusbews.sys [20480 2010-03-06] (Microsoft Windows Hardware Compatibility Publisher -> Marvell Semiconductor, Inc.) S3 Netaapl; C:\WINDOWS\System32\drivers\netaapl64.sys [23040 2017-10-13] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.) S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2017-11-27] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [48520 2021-11-03] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [435424 2021-11-03] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [86240 2021-11-03] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Trois mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-11-04 12:48 - 2021-11-04 12:48 - 002311168 _____ (Farbar) C:\Users\Jean-francois louvet.Jean-francoislo\Downloads\FRST64-2.1 (1).exe 2021-11-03 19:36 - 2021-11-03 19:36 - 002311168 _____ (Farbar) C:\Users\Jean-francois louvet.Jean-francoislo\Downloads\Non confirmé 193209.crdownload 2021-11-03 18:29 - 2021-11-03 18:29 - 002311168 _____ (Farbar) C:\Users\Jean-francois louvet.Jean-francoislo\Downloads\Non confirmé 9959.crdownload 2021-11-03 18:22 - 2021-11-03 18:22 - 002311168 _____ (Farbar) C:\Users\Jean-francois louvet.Jean-francoislo\Downloads\Non confirmé 659911.crdownload 2021-11-03 16:20 - 2021-11-03 17:03 - 000474659 _____ C:\Users\Jean-francois louvet.Jean-francoislo\Downloads\Shortcut.txt 2021-11-03 15:55 - 2021-11-03 18:48 - 000001688 _____ C:\Users\Jean-francois louvet.Jean-francoislo\Desktop\FRST64 (1) - Raccourci.lnk 2021-11-03 15:01 - 2021-11-03 18:18 - 000629770 _____ C:\Users\Jean-francois louvet.Jean-francoislo\Desktop\ZHPDiag.txt 2021-11-03 15:01 - 2021-11-03 15:01 - 000393016 _____ C:\Users\Jean-francois louvet.Jean-francoislo\Desktop\ZHPDiag.html 2021-11-03 14:34 - 2021-11-03 14:34 - 000452096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2021-11-03 14:32 - 2021-11-03 14:32 - 000672768 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll 2021-11-03 14:32 - 2021-11-03 14:32 - 000570368 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2021-11-03 14:32 - 2021-11-03 14:32 - 000011495 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2021-11-03 14:31 - 2021-11-03 14:31 - 002111488 _____ (Digimarc) C:\WINDOWS\SysWOW64\DMRCDecoder.dll 2021-11-03 14:31 - 2021-11-03 14:31 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll 2021-11-03 14:31 - 2021-11-03 14:31 - 000611960 _____ C:\WINDOWS\SysWOW64\TextShaping.dll 2021-11-03 14:30 - 2021-11-03 14:30 - 001164288 _____ C:\WINDOWS\system32\MBR2GPT.EXE 2021-11-03 14:30 - 2021-11-03 14:30 - 000223744 _____ C:\WINDOWS\SysWOW64\TpmTool.exe 2021-11-03 14:28 - 2021-11-03 14:28 - 002295296 _____ (Digimarc) C:\WINDOWS\system32\DMRCDecoder.dll 2021-11-03 14:28 - 2021-11-03 14:28 - 000098304 _____ C:\WINDOWS\system32\Drivers\cimfs.sys 2021-11-03 14:27 - 2021-11-03 14:27 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll 2021-11-03 14:27 - 2021-11-03 14:27 - 000706536 _____ C:\WINDOWS\system32\TextShaping.dll 2021-11-03 14:27 - 2021-11-03 14:27 - 000272384 _____ C:\WINDOWS\system32\TpmTool.exe 2021-11-03 14:27 - 2021-11-03 14:27 - 000162816 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe 2021-11-03 14:26 - 2021-11-03 14:26 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll 2021-11-03 14:24 - 2021-11-03 14:24 - 000000900 _____ C:\Users\Jean-francois louvet.Jean-francoislo\Desktop\ZHPSuite.lnk 2021-11-03 14:18 - 2021-11-03 14:21 - 003477144 _____ (Nicolas Coolman) C:\Users\Jean-francois louvet.Jean-francoislo\Downloads\ZHPSuite (4).exe 2021-11-03 12:44 - 2021-11-03 12:44 - 000000000 ___HD C:\$WinREAgent 2021-11-03 10:33 - 2021-11-03 10:33 - 000347221 _____ C:\Users\Jean-francois louvet.Jean-francoislo\Desktop\passeport.pdf 2021-10-20 20:13 - 2021-10-20 20:13 - 000210344 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys 2021-09-09 12:58 - 2021-09-09 12:58 - 000248992 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys ==================== Trois mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-11-04 13:07 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-11-04 13:01 - 2018-03-11 18:35 - 000000000 ____D C:\Program Files (x86)\Google 2021-11-04 12:56 - 2020-08-27 17:12 - 000022326 _____ C:\Users\Jean-francois louvet.Jean-francoislo\Downloads\FRST.txt 2021-11-04 12:55 - 2020-08-27 17:11 - 000000000 ____D C:\FRST 2021-11-04 12:51 - 2020-08-28 12:05 - 000004206 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{487CF043-5A4A-45FC-88B5-062F2C97701A} 2021-11-04 12:51 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2021-11-04 12:48 - 2020-09-01 10:03 - 000000000 ____D C:\Users\Jean-francois louvet.Jean-francoislo\Downloads\FRST-OlderVersion 2021-11-04 08:10 - 2020-08-28 11:36 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2021-11-03 17:25 - 2018-03-12 19:50 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2021-11-03 17:18 - 2018-03-21 14:18 - 000000000 ___RD C:\Users\Jean-francois louvet.Jean-francoislo\iCloudDrive 2021-11-03 17:16 - 2020-08-28 11:53 - 001770910 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2021-11-03 17:16 - 2019-12-07 15:49 - 000793016 _____ C:\WINDOWS\system32\perfh00C.dat 2021-11-03 17:16 - 2019-12-07 15:49 - 000150146 _____ C:\WINDOWS\system32\perfc00C.dat 2021-11-03 17:16 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2021-11-03 17:12 - 2020-08-28 12:05 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2021-11-03 17:12 - 2020-08-28 11:36 - 000257912 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2021-11-03 17:12 - 2020-08-28 11:35 - 000008192 ___SH C:\DumpStack.log.tmp 2021-11-03 17:11 - 2019-12-07 10:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2021-11-03 17:08 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2021-11-03 17:08 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2021-11-03 17:08 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2021-11-03 17:07 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\UNP 2021-11-03 17:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources 2021-11-03 17:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2021-11-03 17:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2021-11-03 17:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2021-11-03 17:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\migwiz 2021-11-03 17:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2021-11-03 17:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\DDFs 2021-11-03 17:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\appraiser 2021-11-03 17:06 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2021-11-03 17:06 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellComponents 2021-11-03 17:06 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Provisioning 2021-11-03 17:06 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2021-11-03 17:06 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\DiagTrack 2021-11-03 17:06 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2021-11-03 17:06 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing 2021-11-03 17:04 - 2020-08-28 11:39 - 000000000 ____D C:\Users\Jean-francois louvet.Jean-francoislo 2021-11-03 16:20 - 2020-08-27 17:15 - 000029374 _____ C:\Users\Jean-francois louvet.Jean-francoislo\Downloads\Addition.txt 2021-11-03 15:50 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2021-11-03 15:22 - 2019-07-15 10:00 - 000000135 _____ C:\Users\Jean-francois 2021-11-03 15:22 - 2019-07-15 10:00 - 000000000 ____D C:\Users\Jean-francois louvet.Jean-francoislo\AppData\Roaming\ZHP 2021-11-03 14:57 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2021-11-03 12:48 - 2020-12-15 20:46 - 000002446 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-11-03 12:48 - 2020-12-15 20:46 - 000002284 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2021-11-03 12:25 - 2020-08-24 18:48 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2021-11-03 10:32 - 2018-03-12 19:48 - 000000000 ____D C:\WINDOWS\system32\MRT 2021-11-03 10:25 - 2020-08-28 12:05 - 000003634 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-11-03 10:24 - 2020-08-28 12:05 - 000003510 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2021-11-03 10:19 - 2018-03-12 19:47 - 139806512 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2021-10-21 14:53 - 2020-08-29 11:58 - 000002303 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2021-10-21 14:53 - 2020-08-29 11:58 - 000002262 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2021-10-20 20:20 - 2020-10-15 09:10 - 000003590 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2021-10-20 20:20 - 2020-10-15 09:10 - 000003466 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore ==================== SigCheckExt ========================= 2016-06-15 04:36 - 2016-06-15 04:36 - 000052224 _____ (HP Inc.) C:\WINDOWS\system32\hpbmiapi.dll 2016-06-15 04:36 - 2016-06-15 04:36 - 000052736 _____ (HP Inc.) C:\WINDOWS\system32\hpboid.dll 2016-06-15 04:36 - 2016-06-15 04:36 - 000012800 _____ (HP Inc.) C:\WINDOWS\system32\hpboidps.dll 2016-06-15 04:36 - 2016-06-15 04:36 - 000078848 _____ (HP Inc.) C:\WINDOWS\system32\hpbpro.dll 2016-06-15 04:36 - 2016-06-15 04:36 - 000013312 _____ (HP Inc.) C:\WINDOWS\system32\hpbprops.dll 2016-06-15 04:35 - 2016-06-15 04:35 - 000065024 _____ (HP Inc.) C:\WINDOWS\system32\HPBWSDR.DLL 2016-06-14 04:17 - 2016-06-14 04:17 - 000180736 _____ (HP Inc.) C:\WINDOWS\system32\hplbddrv.dll 2016-06-15 04:36 - 2016-06-15 04:36 - 000067072 _____ (HP Inc.) C:\WINDOWS\system32\HPZidr12.dll 2016-06-15 04:36 - 2016-06-15 04:36 - 000050688 _____ (HP Inc.) C:\WINDOWS\system32\HPZinw12.dll 2016-06-15 04:36 - 2016-06-15 04:36 - 000066048 _____ (HP Inc.) C:\WINDOWS\system32\HPZipm12.dll 2016-06-15 04:36 - 2016-06-15 04:36 - 000047104 _____ (HP Inc.) C:\WINDOWS\system32\HPZipr12.dll 2016-06-15 04:36 - 2016-06-15 04:36 - 000038400 _____ (HP Inc.) C:\WINDOWS\system32\hpzipt12.dll 2016-06-15 04:36 - 2016-06-15 04:36 - 000024064 _____ (HP Inc.) C:\WINDOWS\system32\hpzisn12.dll 2016-06-15 04:35 - 2016-06-15 04:35 - 000055296 _____ (HP Inc.) C:\WINDOWS\SysWOW64\HPZidr12.dll 2016-06-15 04:35 - 2016-06-15 04:35 - 000039424 _____ (HP Inc.) C:\WINDOWS\SysWOW64\HPZipr12.dll 2020-03-24 15:01 - 2020-02-27 22:45 - 003930112 _____ () C:\Users\Jean-francois louvet.Jean-francoislo\Desktop\Captvty.exe 2019-07-15 08:57 - 2019-07-15 08:57 - 002908160 _____ (apkinstaller.com) C:\Users\Jean-francois louvet.Jean-francoislo\Downloads\ApkInstaller.exe 2020-03-24 15:00 - 2020-03-24 15:00 - 011032667 _____ (Oleg N. Scherbakov) C:\Users\Jean-francois louvet.Jean-francoislo\Downloads\captvty-2.8.8.1-autoextract.exe 2018-08-06 08:43 - 2018-08-06 08:43 - 000327168 _____ (WZT) C:\Users\Jean-francois louvet.Jean-francoislo\Downloads\DWS.exe 2021-11-04 12:48 - 2021-11-04 12:48 - 002311168 _____ (Farbar) C:\Users\Jean-francois louvet.Jean-francoislo\Downloads\FRST64-2.1 (1).exe 2018-08-06 08:38 - 2018-08-06 08:38 - 000482816 _____ (RCPsoft.net) C:\Users\Jean-francois louvet.Jean-francoislo\Downloads\OSCleaner.exe 2020-08-29 11:50 - 2020-08-29 11:50 - 001622528 _____ C:\Users\Jean-francois louvet.Jean-francoislo\Downloads\ResetBrowser.exe 2020-08-30 16:23 - 2020-08-30 16:23 - 003324800 _____ (Nicolas Coolman) C:\Users\Jean-francois louvet.Jean-francoislo\Downloads\ZHPCleaner (1).exe 2020-12-14 18:37 - 2020-12-14 18:37 - 003339136 _____ (Nicolas Coolman) C:\Users\Jean-francois louvet.Jean-francoislo\Downloads\ZHPCleaner (2).exe 2020-12-14 18:35 - 2020-12-14 18:35 - 003304320 _____ C:\Users\Jean-francois louvet.Jean-francoislo\Downloads\ZHPCleaner-2019.exe 2020-08-30 16:19 - 2020-08-30 16:19 - 003324800 _____ (Nicolas Coolman) C:\Users\Jean-francois louvet.Jean-francoislo\Downloads\ZHPCleaner.exe 2020-08-26 10:44 - 2020-08-26 10:44 - 003456896 _____ (Nicolas Coolman) C:\Users\Jean-francois louvet.Jean-francoislo\Downloads\ZHPSuite (1).exe 2020-08-26 18:27 - 2020-08-26 18:27 - 003456896 _____ (Nicolas Coolman) C:\Users\Jean-francois louvet.Jean-francoislo\Downloads\ZHPSuite (2).exe 2020-08-31 16:26 - 2020-08-31 16:26 - 003456896 _____ (Nicolas Coolman) C:\Users\Jean-francois louvet.Jean-francoislo\Downloads\ZHPSuite (3).exe 2021-11-03 14:18 - 2021-11-03 14:21 - 003477144 _____ (Nicolas Coolman) C:\Users\Jean-francois louvet.Jean-francoislo\Downloads\ZHPSuite (4).exe 2020-08-26 10:43 - 2020-08-26 10:43 - 003456896 _____ (Nicolas Coolman) C:\Users\Jean-francois louvet.Jean-francoislo\Downloads\ZHPSuite.exe 2012-06-28 18:01 - 2014-03-24 21:45 - 000001024 _____ C:\Users\Public\Documents\NTILiveUpdateV9.dll 2012-06-28 18:01 - 2014-03-24 21:45 - 000001024 _____ C:\Users\Public\Documents\NTIMMV9Acer.dll 2012-06-28 18:01 - 2014-03-24 21:45 - 000001024 _____ C:\Users\Public\Documents\NTIMMV9REGET.dll ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== BCD ================================ Gestionnaire de d‚marrage Windows --------------------------------- identificateur {bootmgr} device partition=\Device\HarddiskVolume2 description Windows Boot Manager locale fr-FR inherit {globalsettings} default {current} resumeobject {897fefc4-e922-11ea-8366-bf6e8c341efb} displayorder {current} toolsdisplayorder {memdiag} timeout 30 Chargeur de d‚marrage Windows ----------------------------- identificateur {6f6315ff-e91a-11ea-a3c9-ca536c394273} device ramdisk=[\Device\HarddiskVolume1]\Recovery\WindowsRE\Winre.wim,{6f631600-e91a-11ea-a3c9-ca536c394273} path \windows\system32\winload.exe description Windows Recovery Environment locale fr-FR inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[\Device\HarddiskVolume1]\Recovery\WindowsRE\Winre.wim,{6f631600-e91a-11ea-a3c9-ca536c394273} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Chargeur de d‚marrage Windows ----------------------------- identificateur {current} device partition=C: path \WINDOWS\system32\winload.exe description Windows 10 locale fr-FR inherit {bootloadersettings} recoverysequence {6f6315ff-e91a-11ea-a3c9-ca536c394273} displaymessageoverride Recovery recoveryenabled Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \WINDOWS resumeobject {897fefc4-e922-11ea-8366-bf6e8c341efb} nx OptIn bootmenupolicy Standard Chargeur de d‚marrage Windows ----------------------------- identificateur {8cfc78ef-c174-11e1-a7a0-ad78ed953772} device ramdisk=[C:]\Recovery\8cfc78ef-c174-11e1-a7a0-ad78ed953772\Winre.wim,{8cfc78f0-c174-11e1-a7a0-ad78ed953772} path \windows\system32\winload.exe description Windows Recovery Environment inherit {bootloadersettings} osdevice ramdisk=[C:]\Recovery\8cfc78ef-c174-11e1-a7a0-ad78ed953772\Winre.wim,{8cfc78f0-c174-11e1-a7a0-ad78ed953772} systemroot \windows nx OptIn winpe Yes Reprendre … partir de la mise en veille prolong‚e ------------------------------------------------- identificateur {897fefc4-e922-11ea-8366-bf6e8c341efb} device partition=C: path \WINDOWS\system32\winresume.exe description Windows Resume Application locale fr-FR inherit {resumeloadersettings} recoverysequence {6f6315ff-e91a-11ea-a3c9-ca536c394273} recoveryenabled Yes allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Testeur de m‚moire Windows -------------------------- identificateur {memdiag} device partition=\Device\HarddiskVolume2 path \boot\memtest.exe description Diagnostics m‚moire Windows locale fr-FR inherit {globalsettings} badmemoryaccess Yes ParamŠtres EMS -------------- identificateur {emssettings} bootems No ParamŠtres du d‚bogueur ----------------------- identificateur {dbgsettings} debugtype Serial debugport 1 baudrate 115200 Erreurs de m‚moire RAM ---------------------- identificateur {badmemory} ParamŠtres globaux ------------------ identificateur {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} ParamŠtres du chargeur de d‚marrage ----------------------------------- identificateur {bootloadersettings} inherit {globalsettings} {hypervisorsettings} ParamŠtres de l'hyperviseur ------------------- identificateur {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 ParamŠtres du chargeur de reprise --------------------------------- identificateur {resumeloadersettings} inherit {globalsettings} Options de p‚riph‚rique ----------------------- identificateur {6f631600-e91a-11ea-a3c9-ca536c394273} description Windows Recovery ramdisksdidevice partition=\Device\HarddiskVolume1 ramdisksdipath \Recovery\WindowsRE\boot.sdi Options de p‚riph‚rique ----------------------- identificateur {8cfc78f0-c174-11e1-a7a0-ad78ed953772} description Ramdisk Options ramdisksdidevice partition=C: ramdisksdipath \Recovery\8cfc78ef-c174-11e1-a7a0-ad78ed953772\boot.sdi ==================== Fin de FRST.txt ========================