Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 11-12-2021 Exécuté par Jean Marc (administrateur) sur PORTABLE-SN (Dell Inc. Inspiron 7737) (14-12-2021 13:06:05) Exécuté depuis C:\Users\Jean Marc\OneDrive\Desktop Profils chargés: Jean Marc Plate-forme: Microsoft Windows 10 Professionnel Version 20H2 19042.1348 (X64) Langue: Français (France) Navigateur par défaut: FF Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) () [Fichier non signé] C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Audials AG -> ) C:\Program Files (x86)\Audials\Audials 2021\AudialsNotifier.exe (Brother Industries, Ltd. -> Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe (Brother Industries, Ltd. -> Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe (Brother Industries, Ltd.) [Fichier non signé] C:\Program Files (x86)\Brother\BrUtilities\BrLogRx.exe (Brother Industries, Ltd.) [Fichier non signé] C:\Program Files (x86)\Brother\SoftwareUpdateNotification\SoftwareUpdateNotificationService.exe (Brother Industries, Ltd.) [Fichier non signé] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe (Brother Industries, Ltd.) [Fichier non signé] C:\Program Files (x86)\Browny02\BrYNSvc.exe (CyberLink Corp. -> CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe (CyberLink Corp. -> CyberLink) C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe (DISPLAYLINK (UK) LIMITED -> DisplayLink Corp.) C:\Program Files\DisplayLink Core Software\DisplayLinkTrayApp.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler64.exe (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation - Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation - Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) [Fichier non signé] C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe (Intel Corporation) [Fichier non signé] C:\Windows\Temp\irstrtsv\scrncap.exe (Intel Corporation-Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe (Intel(R) pGFX -> ) C:\Windows\System32\igfxTray.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe (Intel(R) Software -> Intel Corporation) C:\Windows\SysWOW64\irstrtsv.exe (Intel(R) Software -> Intel) C:\Program Files (x86)\Intel\irstrt\RapidStartConfig.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\21.230.1107.0004\FileCoAuth.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneMusic_10.21102.11411.0_x64__8wekyb3d8bbwe\Music.UI.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MpCopyAccelerator.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\NisSrv.exe (Microsoft) [Fichier non signé] C:\Program Files (x86)\Brother\iPrint&Scan\USBAppControl.exe (Microsoft) [Fichier non signé] C:\Program Files (x86)\Brother\iPrint&Scan\WorkflowAppControl.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe <2> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <3> (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Rivet Networks LLC -> CloudBees, Inc.) C:\Program Files\Rivet Networks\SmartByte\RNDBWMService.exe (Rivet Networks LLC -> DELL) C:\Program Files\Rivet Networks\SmartByte\SmartByteTelemetry.exe (Rivet Networks LLC -> Rivet Networks LLC) C:\Program Files\Rivet Networks\SmartByte\RNDBWM.exe (Rivet Networks LLC -> Rivet Networks) C:\Program Files\Rivet Networks\SmartByte\SmartByteNetworkService.exe (SafeNet, Inc. -> SafeNet Inc.) C:\Windows\System32\hasplms.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (X-Rite Incorporated -> X-Rite Inc.) C:\Program Files (x86)\X-Rite\Devices\Services\xrdd.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8512760 2015-08-04] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1411320 2015-08-04] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508240 2015-08-05] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322472 2015-06-23] (Intel Corporation - Rapid Storage Technology -> Intel Corporation) HKLM\...\Run: [DisplayLinkTrayApp] => C:\Program Files\DisplayLink Core Software\DisplayLinkTrayApp.exe [6350592 2021-08-11] (DISPLAYLINK (UK) LIMITED -> DisplayLink Corp.) HKLM-x32\...\Run: [I17B] => C:\WINDOWS\twain_32\Brimi17b\Common\TwDsUiLaunch.exe [85984 2018-03-08] (Microsoft Windows Hardware Compatibility Publisher -> ) HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [145344 2019-07-26] (Brother Industries, Ltd. -> Brother Industries, Ltd.) HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [3147264 2021-08-20] (Brother Industries, Ltd.) [Fichier non signé] HKLM-x32\...\Run: [BrotherSoftwareUpdateNotification] => C:\Program Files (x86)\Brother\SoftwareUpdateNotification\SoftwareUpdateNotificationService.exe [3590656 2021-10-20] (Brother Industries, Ltd.) [Fichier non signé] HKU\S-1-5-21-2857029680-4166488012-1152631189-1002\...\Run: [Gadwin PrintScreen Pro (64-bit)] => C:\Program Files\Gadwin\Gadwin PrintScreenPro\PrintScreenPro64.exe [15688872 2014-10-14] (Gadwin, Ltd. -> Gadwin Systems) HKU\S-1-5-21-2857029680-4166488012-1152631189-1002\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2543992 2021-12-01] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2857029680-4166488012-1152631189-1002\...\Run: [HP Photosmart 7520 series (NET)] => C:\Program Files\HP\HP Photosmart 7520 series\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett Packard -> Hewlett-Packard Co.) HKU\S-1-5-21-2857029680-4166488012-1152631189-1002\...\RunOnce: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2543992 2021-12-01] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2857029680-4166488012-1152631189-1005\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2543992 2021-12-01] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2857029680-4166488012-1152631189-1005\...\Run: [com.squirrel.Teams.Teams] => C:\Users\marin\AppData\Local\Microsoft\Teams\Update.exe [2347880 2020-04-24] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKU\S-1-5-21-2857029680-4166488012-1152631189-1005\...\RunOnce: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2543992 2021-12-01] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2857029680-4166488012-1152631189-1010\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2543992 2021-12-01] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2857029680-4166488012-1152631189-1010\...\Run: [AudialsNotifier] => C:\Program Files (x86)\Audials\Audials 2021\AudialsNotifier.exe [2201352 2021-06-16] (Audials AG -> ) HKU\S-1-5-21-2857029680-4166488012-1152631189-1011\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2543992 2021-12-01] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2857029680-4166488012-1152631189-1011\...\Run: [MicrosoftEdgeAutoLaunch_8F637E43C33D78E231A9613979752433] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window /prefetch:5 HKU\S-1-5-21-2857029680-4166488012-1152631189-1011\...\RunOnce: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2543992 2021-12-01] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2857029680-4166488012-1152631189-1012\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2543992 2021-12-01] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2857029680-4166488012-1152631189-1012\...\RunOnce: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2543992 2021-12-01] (Microsoft Corporation -> Microsoft Corporation) HKLM\...\Print\Monitors\HP BC11 Status Monitor: C:\Windows\system32\hpinkstsBC11LM.dll [331664 2012-06-12] (Hewlett Packard -> Hewlett-Packard Co.) HKLM\...\Print\Monitors\HP DC11 Status Monitor: C:\Windows\system32\hpinkstsDC11LM.dll [391984 2019-03-15] (HP Inc -> HP Inc.) HKLM\...\Print\Monitors\HP Discovery Port Monitor (HP Photosmart 7520 series): C:\Windows\system32\HPDiscoPMBC11.dll [741480 2012-10-17] (Hewlett Packard -> Hewlett-Packard Co.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ImageBrowser EX Agent.lnk [2015-01-23] ShortcutTarget: ImageBrowser EX Agent.lnk -> C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe () [Fichier non signé] Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\XRGamma.lnk [2017-10-16] ShortcutTarget: XRGamma.lnk -> C:\Program Files (x86)\ViewSonic\Colorbration\XRGamma.exe (LOGO Kommunikations- und Drucktechnik GmbH & Co. KG) [Fichier non signé] ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {005420F1-7615-44DE-928F-D3FD2CBE99DA} - System32\Tasks\Intel(R) Rapid Start Technology Manager => C:\Program Files (x86)\Intel\irstrt\RapidStartConfig.exe [711584 2013-09-09] (Intel(R) Software -> Intel) Task: {01FD9A55-6B22-4E19-8F8C-88E8CF5F476C} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2211024 2014-03-19] (Microsoft Corporation -> Microsoft) Task: {042A2C77-E081-4843-B977-905E3C0913C4} - System32\Tasks\GoogleUpdateTaskMachineUA1d0c53b56249ff3 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848 2015-05-01] (Google Inc -> Google Inc.) Task: {0545AD1E-5EF5-4E84-9280-D30F95792721} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {08B4722C-C0D6-4786-9ABB-680D80EAA9A7} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4074344 2021-12-01] (Microsoft Corporation -> Microsoft Corporation) Task: {13EA4B0F-765B-4F29-93DE-20A3E802478D} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK Task: {15A20E60-14B7-41D6-BE25-FAADA105E459} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB" Task: {16AF19D0-C1E9-4113-BFDC-7D4BC44C4DC6} - System32\Tasks\SmartByte Telemetry => C:\Program Files\Rivet Networks\SmartByte\SmartByteTelemetry.exe [30912 2018-03-20] (Rivet Networks LLC -> DELL) Task: {196A75FF-909A-482B-A00D-8A6A92B5DEC5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MpCmdRun.exe [901056 2021-11-03] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {1F56EF88-9DED-43BD-A09B-6A86840D43A5} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1562376 2021-08-16] (Adobe Inc. -> Adobe Inc.) Task: {1F7D0CCD-3E17-465C-BB50-41D39AF7472E} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon => c:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [233760 2013-03-07] (Intel® Services Manager -> Intel Corporation) Task: {31DC9AAA-9799-4D2E-BFC6-BABD06B4C9C8} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [1487568 2014-03-19] (Microsoft Corporation -> Microsoft Corporation) Task: {32C2FF3F-ECA7-495F-B19C-5B37472D4DE9} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MpCmdRun.exe [901056 2021-11-03] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\WINDOWS\System32\AutoWorkplace.exe join (Pas de fichier) Task: {3B430C44-B5C7-4340-86B7-1B850D422D1A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MpCmdRun.exe [901056 2021-11-03] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {4CD1B061-C9DF-41EC-8D83-0BA078F49448} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [111032 2021-12-08] (Microsoft Corporation -> Microsoft Corporation) Task: {4DCFCC9C-E417-4D00-99E2-42A0EFB8A3E4} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MpCmdRun.exe [901056 2021-11-03] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {55C6452D-11FB-4FCF-8488-7345D4162A62} - System32\Tasks\CLVDLauncher => C:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe [340440 2013-03-22] (CyberLink Corp. -> CyberLink Corp.) Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task => {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Task: {6F8C64AE-F2AD-4A64-9F0F-1A1D5DC46631} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [651400 2017-09-20] (Hewlett Packard -> HP Inc.) Task: {8754BECC-F44C-47E0-9FF0-5FD7AB7722CD} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [1487568 2014-03-19] (Microsoft Corporation -> Microsoft Corporation) Task: {8A1E52F4-C762-49A8-833A-F6E4BDCBFE92} - System32\Tasks\CLMLSvc_P2G8 => C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [110144 2013-03-05] (CyberLink Corp. -> CyberLink) Task: {8A4E6EBB-D38E-481E-80ED-9F3013228E45} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [136056 2019-01-02] (HP Inc. -> HP Inc.) Task: {8D5B3B7B-ACB2-4711-915C-987AAA7F8F60} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d => c:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [233760 2013-03-07] (Intel® Services Manager -> Intel Corporation) Task: {9661FF23-8D0A-4DCD-8AF2-BFAF4CAC59FC} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [111032 2021-12-08] (Microsoft Corporation -> Microsoft Corporation) Task: {9A1B7FF8-EE89-41B1-BAF1-0E4C600A52A6} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22799320 2021-12-02] (Microsoft Corporation -> Microsoft Corporation) Task: {9BC6F238-4427-41AB-8898-562255D05F18} - System32\Tasks\Synaptics TouchPad Enhancements => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [4167080 2018-09-26] (Synaptics Incorporated -> Synaptics Incorporated) Task: {9EF51C61-5C5F-4E07-ACB0-1A1BACCD4C60} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-2857029680-4166488012-1152631189-1010 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4074344 2021-12-01] (Microsoft Corporation -> Microsoft Corporation) Task: {C7F508EE-51C6-4049-B312-78AB45C4EA34} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848 2015-05-01] (Google Inc -> Google Inc.) Task: {C98F6E38-0F76-4224-A03E-68B568F2EEE3} - System32\Tasks\X-Rite Device Services Software Updater => C:\Program Files (x86)\X-Rite\Devices\Services\XRD Software Update.exe [24432 2015-09-18] (X-Rite Incorporated -> X-Rite Inc.) Task: {CE2DE968-E342-40D7-9566-427D45E4A886} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371} Task: {D4521D22-88DF-4E94-96DB-6D7DB583FA2C} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22799320 2021-12-02] (Microsoft Corporation -> Microsoft Corporation) Task: {DB12D6D0-7F93-416D-9C8B-712FFAE8589E} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2118352 2014-03-19] (Microsoft Corporation -> Microsoft Corporation) Task: {DB7ADF54-A3D0-4F9B-9D25-C22B6959F8C9} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2118352 2014-03-19] (Microsoft Corporation -> Microsoft Corporation) Task: {DD29DDC8-026A-4EE6-9C2B-410C3EE15CC9} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater – Install HPSA => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [651400 2017-09-20] (Hewlett Packard -> HP Inc.) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe Task: C:\WINDOWS\Tasks\X-Rite Device Services Software Updater.job => C:\Program Files (x86)\X-Rite\Devices\Services\XRD Software Update.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{3d9617e8-c869-4532-aa6a-679f6da6e05c}: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{b910bf8c-7af4-446c-929b-d57c53c34594}: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{c810884b-3949-4529-bbb7-a29951a754bf}: [DhcpNameServer] 192.168.0.254 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\Jean Marc\AppData\Local\Microsoft\Edge\User Data\Default [2021-10-25] FireFox: ======== FF DefaultProfile: lp77kve2.default-1478419688235 FF ProfilePath: C:\Users\Jean Marc\AppData\Roaming\Mozilla\Firefox\Profiles\ajiqg1f2.default-release [2021-07-20] FF Session Restore: Mozilla\Firefox\Profiles\ajiqg1f2.default-release -> est activé. FF ProfilePath: C:\Users\Jean Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lp77kve2.default-1478419688235 [2021-12-14] FF DownloadDir: C:\Users\Jean Marc\OneDrive\Desktop FF Homepage: Mozilla\Firefox\Profiles\lp77kve2.default-1478419688235 -> hxxps://duckduckgo.com/ FF Session Restore: Mozilla\Firefox\Profiles\lp77kve2.default-1478419688235 -> est activé. FF Extension: (Disconnect) - C:\Users\Jean Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lp77kve2.default-1478419688235\Extensions\2.0@disconnect.me.xpi [2021-06-02] FF Extension: (Disable HTML5 Autoplay) - C:\Users\Jean Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lp77kve2.default-1478419688235\Extensions\disable-html5-autoplay@afnankhan.xpi [2020-04-15] FF Extension: (Dictionnaire français) - C:\Users\Jean Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lp77kve2.default-1478419688235\Extensions\fr-dicollecte@dictionaries.addons.mozilla.org.xpi [2020-05-30] FF Extension: (DuckDuckGo Privacy Essentials) - C:\Users\Jean Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lp77kve2.default-1478419688235\Extensions\jid1-ZAdIEUB7XOzOJw@jetpack.xpi [2021-10-02] FF Extension: (Decodex) - C:\Users\Jean Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lp77kve2.default-1478419688235\Extensions\lemonde-decodex@lemonde.fr.xpi [2020-01-17] FF Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\Jean Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lp77kve2.default-1478419688235\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2021-11-24] FF ProfilePath: C:\Users\Jean Marc\AppData\Roaming\Mozilla\Firefox\Profiles\ei5oj8t2.default-1401315239375 [2021-07-19] FF Homepage: Mozilla\Firefox\Profiles\ei5oj8t2.default-1401315239375 -> hxxp://duckduckgo.com/ FF Extension: (Ghostery) - C:\Users\Jean Marc\AppData\Roaming\Mozilla\Firefox\Profiles\ei5oj8t2.default-1401315239375\Extensions\firefox@ghostery.com.xpi [2016-05-04] [] FF Extension: (YouTube mp3) - C:\Users\Jean Marc\AppData\Roaming\Mozilla\Firefox\Profiles\ei5oj8t2.default-1401315239375\Extensions\info@youtube-mp3.org.xpi [2016-06-11] [] FF Extension: (Pas de nom) - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [non trouvé(e)] FF SearchPlugin: C:\Users\Jean Marc\AppData\Roaming\Mozilla\Firefox\Profiles\ei5oj8t2.default-1401315239375\searchplugins\McSiteAdvisor.xml [2016-03-09] FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt FF Extension: (Logitech SetPoint) - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2015-02-10] [] [non signé] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2021-10-05] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-08-06] (Adobe Systems Incorporated -> Adobe Systems) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-08-24] (Intel(R) Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-08-24] (Intel(R) Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-08-24] (Intel(R) Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @mcafee.com/MVT -> C:\Program Files (x86)\McAfee\Supportability\MVT\NPMVTPlugin.dll [Pas de fichier] FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-10-30] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-08-06] (Adobe Systems Incorporated -> Adobe Systems) ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-08-16] (Adobe Inc. -> Adobe Inc.) S3 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2227312 2017-02-27] (Adobe Systems Incorporated -> Adobe Systems, Incorporated) R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [321536 2021-08-20] (Brother Industries, Ltd.) [Fichier non signé] R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12129160 2021-12-02] (Microsoft Corporation -> Microsoft Corporation) S3 Dell Foundation Services; C:\Program Files\Dell\Dell Foundation Services\DFSSvc.exe [97616 2017-01-11] (Dell Inc -> Dell) S3 DellProdRegManager; C:\Program Files (x86)\Dell Product Registration\regmgrsvc.exe [278568 2014-10-31] (Leader Technologies Inc -> Aviata, Inc.) S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\21.230.1107.0004\FileSyncHelper.exe [3280760 2021-12-01] (Microsoft Corporation -> Microsoft Corporation) R2 hasplms; C:\WINDOWS\system32\hasplms.exe [4665168 2015-09-23] (SafeNet, Inc. -> SafeNet Inc.) S3 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [347512 2018-12-06] (HP Inc. -> HP Inc.) R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [Fichier non signé] S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [Fichier non signé] S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\21.230.1107.0004\OneDriveUpdaterService.exe [3737976 2021-12-01] (Microsoft Corporation -> Microsoft Corporation) R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [253776 2013-07-30] (CyberLink Corp. -> CyberLink) R2 RNDBWM; C:\Program Files\Rivet Networks\SmartByte\RNDBWMService.exe [64184 2018-03-20] (Rivet Networks LLC -> CloudBees, Inc.) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6103464 2021-11-11] (Microsoft Windows Publisher -> Microsoft Corporation) R2 SmartByte Network Service x64; C:\Program Files\Rivet Networks\SmartByte\SmartByteNetworkService.exe [2011848 2018-03-20] (Rivet Networks LLC -> Rivet Networks) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13353768 2021-09-15] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) R2 USBAppControl; C:\Program Files (x86)\Brother\iPrint&Scan\USBAppControl.exe [12288 2020-08-04] (Microsoft) [Fichier non signé] R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\NisSrv.exe [2872024 2021-11-03] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MsMpEng.exe [128376 2021-11-03] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WorkflowAppControl; C:\Program Files (x86)\Brother\iPrint&Scan\WorkflowAppControl.exe [20480 2020-08-04] (Microsoft) [Fichier non signé] R2 xrdd.exe; C:\Program Files (x86)\X-Rite\Devices\Services\xrdd.exe [83312 2015-09-18] (X-Rite Incorporated -> X-Rite Inc.) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R3 akshasp; C:\WINDOWS\system32\DRIVERS\akshasp.sys [77912 2015-09-23] (SafeNet, Inc. -> SafeNet Inc.) R3 akshhl; C:\WINDOWS\system32\DRIVERS\akshhl.sys [81368 2015-09-23] (SafeNet, Inc. -> SafeNet Inc.) R3 aksusb; C:\WINDOWS\system32\DRIVERS\aksusb.sys [322560 2015-09-23] (SafeNet, Inc. -> SafeNet Inc.) S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20640 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35560 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [284672 2021-04-14] (Microsoft Corporation) [Fichier non signé] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Fichier non signé] S3 DellProf; C:\WINDOWS\system32\drivers\DellProf.sys [41208 2018-05-08] (Techporch Incorporated -> Dell Computer Corporation) R3 DellRbtn; C:\WINDOWS\System32\drivers\DellRbtn.sys [10752 2013-01-25] (Microsoft Windows Hardware Compatibility Publisher -> OSR Open Systems Resources, Inc.) R3 dlcdcncm; C:\WINDOWS\System32\drivers\dlcdcncm62_x64.sys [81720 2021-08-24] (DISPLAYLINK (UK) LIMITED -> DisplayLink Corp.) R2 hardlock; C:\WINDOWS\system32\drivers\hardlock.sys [350552 2015-09-23] (SafeNet, Inc. -> SafeNet Inc.) R2 mi2c; C:\WINDOWS\system32\drivers\mi2c.sys [20784 2020-03-30] (AOC International (Europe) GmbH -> Nicomsoft Ltd.) S3 RtsUpx; C:\WINDOWS\system32\drivers\RtsUpx.sys [18136 2017-10-16] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.) R2 SmbCoSvc; C:\WINDOWS\system32\DRIVERS\SmbCo10X64.sys [119528 2018-03-20] (Rivet Networks LLC -> Rivet Networks, LLC.) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [48520 2021-11-03] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [435424 2021-11-03] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [86240 2021-11-03] (Microsoft Windows -> Microsoft Corporation) R2 WinI2C-DDC; C:\WINDOWS\system32\drivers\DDCDrv.sys [20832 2016-08-17] (PC Micro Systems Inc. -> Nicomsoft Ltd.) S3 dlusbaudio; \SystemRoot\System32\drivers\dlusbaudio_x64.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-12-14 13:05 - 2021-12-14 13:06 - 000000000 ____D C:\FRST 2021-12-14 09:28 - 2021-12-14 09:29 - 003409137 _____ C:\Users\Jean Marc\Downloads\Archive_Fact-20211214-08551651.zip 2021-12-14 09:24 - 2021-12-14 09:24 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2021-12-13 11:00 - 2021-12-13 11:00 - 000786712 _____ C:\Users\Jean Marc\Downloads\AIFE-ChorusPro-Deposer-facture-PDF-V1-2018.pdf 2021-12-12 16:31 - 2021-12-12 16:31 - 001272020 _____ C:\WINDOWS\Minidump\121221-16234-01.dmp 2021-12-12 16:30 - 2021-12-12 16:31 - 000008192 ___SH C:\DumpStack.log.tmp 2021-12-11 23:00 - 2021-12-11 23:00 - 000003596 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2857029680-4166488012-1152631189-1010 2021-12-10 23:53 - 2021-12-10 23:53 - 007511112 _____ C:\Users\Jean Marc\Downloads\catalogue-2022.pdf 2021-12-10 10:57 - 2021-12-10 10:57 - 000212956 _____ C:\Users\Jean Marc\Downloads\Facture(4).pdf 2021-12-10 10:56 - 2021-12-10 10:56 - 000105212 _____ C:\Users\Jean Marc\Downloads\Facture(3).pdf 2021-12-10 10:55 - 2021-12-10 10:55 - 000212072 _____ C:\Users\Jean Marc\Downloads\Facture(2).pdf 2021-12-10 10:54 - 2021-12-10 10:54 - 000368980 _____ C:\Users\Jean Marc\Downloads\Facture(1).pdf 2021-12-10 10:53 - 2021-12-10 10:53 - 000105160 _____ C:\Users\Jean Marc\Downloads\Facture.pdf 2021-12-09 12:34 - 2021-12-12 14:26 - 000000000 ____D C:\Program Files\Mozilla Thunderbird 2021-12-08 11:33 - 2021-12-12 14:26 - 000000000 ____D C:\Program Files\Mozilla Firefox 2021-12-07 23:47 - 2021-12-07 23:47 - 000000000 ____D C:\Users\Jean Marc\AppData\Local\Viveza 3 2021-12-07 23:46 - 2021-12-07 23:46 - 000000000 ____D C:\Users\Jean Marc\AppData\Local\Silver Efex Pro 3 2021-12-07 23:42 - 2021-12-07 23:42 - 000001935 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DxO FilmPack 6.lnk 2021-12-07 23:40 - 2021-12-07 23:43 - 000000000 ____D C:\Users\Jean Marc\AppData\Local\DxO_Labs 2021-12-07 23:39 - 2021-12-07 23:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DxO Nik Collection 2021-12-07 23:35 - 2021-12-07 23:35 - 000002042 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DxO PureRAW.lnk 2021-12-07 23:28 - 2021-12-07 23:28 - 000000000 ____D C:\Users\Jean Marc\OneDrive\Documents\DxO PhotoLab 5 logs 2021-12-07 23:25 - 2021-12-07 23:25 - 000001100 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DxO PhotoLab 5.lnk 2021-12-05 22:13 - 2021-12-05 22:13 - 000703773 _____ C:\Users\Jean Marc\Downloads\Avis_de_taxe_d_habitation_CAP_2021(1).pdf 2021-12-05 17:53 - 2021-12-05 17:53 - 000143104 _____ C:\Users\Jean Marc\Downloads\AttestationDroits(6).pdf 2021-12-05 17:50 - 2021-12-05 17:50 - 000226209 _____ C:\Users\Jean Marc\Downloads\GARANTIES ETUDIANTS WEB 2021_Partie3.pdf 2021-12-05 17:50 - 2021-12-05 17:50 - 000221165 _____ C:\Users\Jean Marc\Downloads\GARANTIES ETUDIANTS WEB 2021_Partie2.pdf 2021-12-05 17:50 - 2021-12-05 17:50 - 000216663 _____ C:\Users\Jean Marc\Downloads\GARANTIES ETUDIANTS WEB 2021_Partie1.pdf 2021-12-03 16:06 - 2021-12-03 16:06 - 000350379 _____ C:\Users\Jean Marc\Downloads\2809 Tournefeuille.pdf 2021-12-03 15:26 - 2021-12-03 15:26 - 000077505 _____ C:\Users\Jean Marc\Downloads\amstrust_20210303013011110GNXXSDCFAEAU03046966(1).pdf 2021-12-03 15:25 - 2021-12-03 15:25 - 000354169 _____ C:\Users\Jean Marc\Downloads\amstrust_20210807013024240GNXXSDCCDEAU09017217.pdf 2021-12-03 15:25 - 2021-12-03 15:25 - 000077505 _____ C:\Users\Jean Marc\Downloads\amstrust_20210303013011110GNXXSDCFAEAU03046966.pdf 2021-12-03 15:24 - 2021-12-03 15:24 - 000077404 _____ C:\Users\Jean Marc\Downloads\amstrust_20210807013024240GNXXSDCFAEAU09017216(1).pdf 2021-12-03 15:22 - 2021-12-03 15:22 - 000133740 _____ C:\Users\Jean Marc\Downloads\202002 La qualité de l'eauu_WEB (2).pdf 2021-12-03 15:14 - 2021-12-12 16:31 - 1036170596 _____ C:\WINDOWS\MEMORY.DMP 2021-12-03 15:14 - 2021-12-12 16:31 - 000000000 ____D C:\WINDOWS\Minidump 2021-12-03 15:14 - 2021-12-03 15:14 - 001477724 _____ C:\WINDOWS\Minidump\120321-31437-01.dmp 2021-12-03 12:25 - 2021-12-03 12:25 - 000316945 _____ C:\Users\Jean Marc\Downloads\210728-Comparatif-Produits-TopToilet-Complet.pdf 2021-12-02 10:37 - 2021-12-02 10:37 - 000666207 _____ C:\Users\Jean Marc\Downloads\CAHIER 93.pdf 2021-12-01 23:45 - 2021-12-01 23:45 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task 2021-12-01 23:45 - 2021-12-01 23:45 - 000002182 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-11-30 22:57 - 2021-11-30 22:58 - 000324694 _____ C:\Users\Jean Marc\Downloads\WC monobloc Luxe Diamond Notice_63291(1).pdf 2021-11-30 22:57 - 2021-11-30 22:58 - 000191617 _____ C:\Users\Jean Marc\Downloads\WC monobloc Luxe Diamond Descriptif_63291.pdf 2021-11-30 22:09 - 2021-11-30 22:09 - 000310785 _____ C:\Users\Jean Marc\Downloads\WC MONOBLOCS LUXE PLATINIUM Notice_62294.pdf 2021-11-30 22:09 - 2021-11-30 22:09 - 000186536 _____ C:\Users\Jean Marc\Downloads\WC MONOBLOCS LUXE PLATINIUM Descriptif_62294.pdf 2021-11-30 22:09 - 2021-11-30 22:09 - 000127317 _____ C:\Users\Jean Marc\Downloads\pdfAccessoire_62294.pdf 2021-11-26 23:01 - 2021-11-26 23:01 - 000172832 _____ C:\Users\Jean Marc\Downloads\tarifs_2021.pdf 2021-11-24 15:59 - 2021-11-24 15:59 - 000000000 ____D C:\Users\Jean Marc\Downloads\Mankell 2021-11-18 23:08 - 2021-11-18 23:08 - 000277759 _____ C:\Users\Jean Marc\Downloads\Document-d-information-sur-la-ventilation.pdf 2021-11-17 18:05 - 2021-11-17 18:06 - 067862090 _____ C:\Users\Jean Marc\Downloads\debug.dat 2021-11-15 14:13 - 2021-11-15 14:13 - 000001085 _____ C:\Users\Public\Desktop\calibre - E-book management.lnk 2021-11-14 23:29 - 2021-11-14 23:29 - 000324694 _____ C:\Users\Jean Marc\Downloads\pdfNotice_63291.pdf ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-12-14 13:06 - 2020-06-18 11:09 - 000000000 ____D C:\Users\Jean Marc\AppData\LocalLow\Mozilla 2021-12-14 13:00 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-12-14 12:42 - 2015-05-01 15:33 - 000000000 ____D C:\Program Files (x86)\Google 2021-12-14 10:44 - 2014-12-20 03:45 - 000000000 ____D C:\ProgramData\Mozilla 2021-12-14 09:42 - 2015-02-10 18:44 - 000000000 ____D C:\Facturation 2021-12-14 09:24 - 2020-06-18 10:59 - 000000000 ___RD C:\Users\Jean Marc\OneDrive 2021-12-14 09:24 - 2020-06-18 10:56 - 000000000 __SHD C:\Users\Jean Marc\IntelGraphicsProfiles 2021-12-13 23:44 - 2020-08-18 22:01 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2021-12-13 20:13 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2021-12-13 20:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2021-12-12 23:15 - 2020-08-18 20:15 - 000000000 ____D C:\Users\Jean Marc 2021-12-12 16:36 - 2020-08-18 22:14 - 002693478 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2021-12-12 16:36 - 2020-08-18 19:50 - 000768104 _____ C:\WINDOWS\system32\prfh0816.dat 2021-12-12 16:36 - 2020-08-18 19:50 - 000152800 _____ C:\WINDOWS\system32\prfc0816.dat 2021-12-12 16:36 - 2019-12-07 15:50 - 000793016 _____ C:\WINDOWS\system32\perfh00C.dat 2021-12-12 16:36 - 2019-12-07 15:50 - 000150146 _____ C:\WINDOWS\system32\perfc00C.dat 2021-12-12 16:36 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2021-12-12 16:31 - 2020-08-18 22:13 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2021-12-12 16:31 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState 2021-12-12 16:31 - 2017-03-19 20:49 - 000000000 ____D C:\Program Files (x86)\TeamViewer 2021-12-12 14:28 - 2020-01-08 14:54 - 000007982 _____ C:\WINDOWS\BRRBCOM.INI 2021-12-12 14:26 - 2014-12-20 03:45 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2021-12-11 23:02 - 2020-06-29 19:25 - 000002446 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-12-11 23:02 - 2020-06-29 19:25 - 000002284 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2021-12-10 23:25 - 2020-08-18 22:13 - 000003634 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-12-10 23:25 - 2020-08-18 22:13 - 000003510 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2021-12-08 23:56 - 2021-08-25 17:57 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2021-12-08 23:56 - 2014-12-20 03:45 - 000001013 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2021-12-08 10:32 - 2014-12-10 06:57 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2021-12-07 23:49 - 2020-12-02 16:51 - 000000000 ____D C:\ProgramData\DxO 2021-12-07 23:49 - 2020-12-02 16:51 - 000000000 ____D C:\Program Files\DxO 2021-12-07 23:46 - 2014-12-24 10:49 - 000000000 ____D C:\ProgramData\DxO Labs 2021-12-07 23:41 - 2014-12-24 10:49 - 000000000 ____D C:\Program Files\DxO Labs 2021-12-07 23:39 - 2020-12-02 16:55 - 000000000 ____D C:\Users\Jean Marc\AppData\Roaming\DxO 2021-12-07 23:39 - 2020-12-02 16:54 - 000000000 ____D C:\Users\Jean Marc\AppData\Local\DxO 2021-12-07 23:39 - 2014-12-10 06:48 - 000000000 ____D C:\ProgramData\Package Cache 2021-12-07 23:16 - 2021-11-02 18:42 - 000000000 ____D C:\Nouveau dossier 2021-12-03 15:14 - 2021-10-16 08:37 - 000000000 ____D C:\Program Files\Microsoft OneDrive 2021-12-03 12:54 - 2020-06-23 08:47 - 000000000 ____D C:\Users\Jean Marc\AppData\Roaming\Applications WinDev 2021-12-01 16:37 - 2020-07-01 13:05 - 000000000 ____D C:\Users\Jean Marc\Bibliothèque calibre 2021-12-01 16:10 - 2015-08-29 21:15 - 000000000 ___SD C:\Mes Projets 2021-11-23 23:34 - 2020-06-18 10:56 - 000000000 ____D C:\Users\Jean Marc\AppData\Local\Packages 2021-11-21 12:21 - 2018-06-17 20:41 - 000000000 ____D C:\ProgramData\Packages 2021-11-20 17:07 - 2021-07-29 12:54 - 000000000 ____D C:\Users\Jean Marc\AppData\Local\CrashDumps 2021-11-17 10:42 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\NDF 2021-11-15 14:13 - 2020-07-01 13:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\calibre - E-book Management 2021-11-15 14:13 - 2020-07-01 13:04 - 000000000 ____D C:\Program Files (x86)\Calibre2 ==================== Fichiers à la racine de certains dossiers ======== 2020-07-17 22:59 - 2020-07-17 22:59 - 000007604 _____ () C:\Users\Jean Marc\AppData\Local\Resmon.ResmonCfg ==================== FLock ============================== 2014-12-10 16:44 C:\System Recovery ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== BCD ================================ Gestionnaire de d‚marrage du microprogramme ------------------------------------------- identificateur {fwbootmgr} displayorder {bootmgr} {15055d88-8084-11e4-87cc-74e6e21801c5} {15055d85-8084-11e4-87cc-74e6e21801c5} {15055d86-8084-11e4-87cc-74e6e21801c5} {15055d87-8084-11e4-87cc-74e6e21801c5} {15055d84-8084-11e4-87cc-74e6e21801c5} {15055d82-8084-11e4-87cc-74e6e21801c5} {15055d83-8084-11e4-87cc-74e6e21801c5} {15055d89-8084-11e4-87cc-74e6e21801c5} {15055d8a-8084-11e4-87cc-74e6e21801c5} {15055d8b-8084-11e4-87cc-74e6e21801c5} {15055d8c-8084-11e4-87cc-74e6e21801c5} {15055d8d-8084-11e4-87cc-74e6e21801c5} timeout 0 Gestionnaire de d‚marrage Windows --------------------------------- identificateur {bootmgr} device partition=\Device\HarddiskVolume1 path \EFI\Microsoft\Boot\bootmgfw.efi description Windows Boot Manager locale fr-FR inherit {globalsettings} default {current} resumeobject {a0d7ca56-6780-11e8-b9c9-b2467d03d419} displayorder {current} toolsdisplayorder {memdiag} timeout 30 Application logicielle (101fffff) -------------------------------- identificateur {15055d82-8084-11e4-87cc-74e6e21801c5} description Setup Application logicielle (101fffff) -------------------------------- identificateur {15055d83-8084-11e4-87cc-74e6e21801c5} description Boot Menu Application logicielle (101fffff) -------------------------------- identificateur {15055d84-8084-11e4-87cc-74e6e21801c5} description Removable Drive Application logicielle (101fffff) -------------------------------- identificateur {15055d85-8084-11e4-87cc-74e6e21801c5} description Hard Drive Application logicielle (101fffff) -------------------------------- identificateur {15055d86-8084-11e4-87cc-74e6e21801c5} description USB Storage Device Application logicielle (101fffff) -------------------------------- identificateur {15055d87-8084-11e4-87cc-74e6e21801c5} description CD/DVD/CD-RW Drive Application logicielle (101fffff) -------------------------------- identificateur {15055d88-8084-11e4-87cc-74e6e21801c5} description Network Application logicielle (101fffff) -------------------------------- identificateur {15055d89-8084-11e4-87cc-74e6e21801c5} description Onboard NIC Application logicielle (101fffff) -------------------------------- identificateur {15055d8a-8084-11e4-87cc-74e6e21801c5} description Onboard NIC Application logicielle (101fffff) -------------------------------- identificateur {15055d8b-8084-11e4-87cc-74e6e21801c5} description Diagnostics Application logicielle (101fffff) -------------------------------- identificateur {15055d8c-8084-11e4-87cc-74e6e21801c5} description Peripheral Device setting (OPROM setting) Application logicielle (101fffff) -------------------------------- identificateur {15055d8d-8084-11e4-87cc-74e6e21801c5} description Change boot mode setting Chargeur de d‚marrage Windows ----------------------------- identificateur {15055d91-8084-11e4-87cc-74e6e21801c5} device ramdisk=[unknown]\Recovery\WindowsRE\Winre.wim,{15055d92-8084-11e4-87cc-74e6e21801c5} path \windows\system32\winload.efi description Windows Recovery Environment locale fr-FR inherit {bootloadersettings} displaymessage Recovery displaymessageoverride Recovery osdevice ramdisk=[unknown]\Recovery\WindowsRE\Winre.wim,{15055d92-8084-11e4-87cc-74e6e21801c5} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Chargeur de d‚marrage Windows ----------------------------- identificateur {current} device partition=C: path \WINDOWS\system32\winload.efi description Windows 10 locale fr-FR inherit {bootloadersettings} recoverysequence {a0d7ca59-6780-11e8-b9c9-b2467d03d419} displaymessageoverride Recovery recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \WINDOWS resumeobject {a0d7ca56-6780-11e8-b9c9-b2467d03d419} nx OptIn bootmenupolicy Standard Chargeur de d‚marrage Windows ----------------------------- identificateur {a0d7ca59-6780-11e8-b9c9-b2467d03d419} device ramdisk=[E:]\Recovery\WindowsRE\Winre.wim,{a0d7ca5a-6780-11e8-b9c9-b2467d03d419} path \windows\system32\winload.efi description Windows Recovery Environment locale fr-FR inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[E:]\Recovery\WindowsRE\Winre.wim,{a0d7ca5a-6780-11e8-b9c9-b2467d03d419} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Reprendre … partir de la mise en veille prolong‚e ------------------------------------------------- identificateur {a0d7ca56-6780-11e8-b9c9-b2467d03d419} device partition=C: path \WINDOWS\system32\winresume.efi description Windows Resume Application locale fr-FR inherit {resumeloadersettings} recoverysequence {a0d7ca59-6780-11e8-b9c9-b2467d03d419} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Testeur de m‚moire Windows -------------------------- identificateur {memdiag} device partition=\Device\HarddiskVolume1 path \EFI\Microsoft\Boot\memtest.efi description Diagnostics m‚moire Windows locale fr-FR inherit {globalsettings} badmemoryaccess Yes ParamŠtres EMS -------------- identificateur {emssettings} bootems No ParamŠtres du d‚bogueur ----------------------- identificateur {dbgsettings} debugtype Serial debugport 1 baudrate 115200 Erreurs de m‚moire RAM ---------------------- identificateur {badmemory} ParamŠtres globaux ------------------ identificateur {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} ParamŠtres du chargeur de d‚marrage ----------------------------------- identificateur {bootloadersettings} inherit {globalsettings} {hypervisorsettings} ParamŠtres de l'hyperviseur ------------------- identificateur {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 ParamŠtres du chargeur de reprise --------------------------------- identificateur {resumeloadersettings} inherit {globalsettings} Options de p‚riph‚rique ----------------------- identificateur {a0d7ca5a-6780-11e8-b9c9-b2467d03d419} description Windows Recovery ramdisksdidevice partition=E: ramdisksdipath \Recovery\WindowsRE\boot.sdi ==================== Fin de FRST.txt ========================