Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 14-02-2022 01 Exécuté par Rom (administrateur) sur NETBOOK-HOME (ASUSTeK Computer Inc. U36SD) (18-02-2022 00:08:21) Exécuté depuis C:\Users\Rom\Desktop Profils chargés: UpdatusUser & Rom Plate-forme: Microsoft Windows 10 Famille Version 21H1 19043.1466 (X64) Langue: Français (France) Navigateur par défaut: Chrome Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) () [Fichier non signé] C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\AVGUI.exe <4> (C:\Program Files\AVG\Secure VPN\VpnSvc.exe ->) (AVG Technologies USA, LLC -> The OpenVPN Project) C:\Program Files\AVG\Secure VPN\OpenVPN\openvpn.exe (C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (explorer.exe ->) (Alcor Micro Corp.) [Fichier non signé] C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe (explorer.exe ->) (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iTunes_12122.2.54019.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (explorer.exe ->) (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Secure VPN\Vpn.exe <4> (explorer.exe ->) (Google LLC -> ) C:\Program Files\Google\Drive File Stream\55.0.3.0\crashpad_handler.exe <3> (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <17> (explorer.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\hkcmd.exe (explorer.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxpers.exe (explorer.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (explorer.exe ->) (ultracopier.first-world.info) [Fichier non signé] C:\Program Files\Supercopier\supercopier.exe (FBAgent.exe ->) (ASUSTeK Computer Inc. -> ASUS) C:\Windows\AsScrPro.exe (FBAgent.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler64.exe (Google LLC -> Google, Inc.) C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe <7> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (services.exe ->) (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe (services.exe ->) (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\afwServ.exe (services.exe ->) (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\aswidsagent.exe (services.exe ->) (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe (services.exe ->) (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\avgToolsSvc.exe (services.exe ->) (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\wsc_proxy.exe (services.exe ->) (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Secure VPN\VpnSvc.exe (services.exe ->) (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\TuneUp\TuneupSvc.exe (services.exe ->) (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (services.exe ->) (Huawei Technologies Co., Ltd. -> ) [Fichier non signé] C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe <2> (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2> (svchost.exe ->) (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Windows (R) Win 7 DDK provider) [Fichier non signé] C:\Program Files\Fresco Logic Inc\Fresco Logic USB3.0 Host Controller\host\FLxHCIm.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [AmIcoSinglun64] => C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [324096 2010-08-11] (Alcor Micro Corp.) [Fichier non signé] HKLM\...\Run: [AVGUI.exe] => C:\Program Files (x86)\AVG\Antivirus\AvLaunch.exe [190904 2022-01-04] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2226280 2011-05-17] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2392360 2010-10-08] (Synaptics Incorporated -> Synaptics Incorporated) HKLM\...\Run: [TuneupUI.exe] => C:\Program Files\AVG\TuneUp\TuneupUI.exe [3912504 2022-01-24] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [ASUSPRP] => C:\Program Files (x86)\ASUS\APRP\APRP.EXE [2018032 2011-04-13] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) [Fichier non signé] HKLM-x32\...\Run: [ASUSWebStorage] => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\AsusWSPanel.exe [731472 2011-02-23] (eCareme Technologies, Inc. -> ecareme) HKLM-x32\...\Run: [FLxHCIm] => C:\Program Files\Fresco Logic Inc\Fresco Logic USB3.0 Host Controller\host\FLxHCIm.exe [43008 2011-04-08] (Windows (R) Win 7 DDK provider) [Fichier non signé] HKLM-x32\...\Run: [ATKOSD2] => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [5732992 2010-08-17] (ASUSTeK Computer Inc. -> ASUS) HKLM-x32\...\Run: [ATKMEDIA] => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624 2010-10-07] (ASUSTeK Computer Inc. -> ASUS) HKLM-x32\...\Run: [HControlUser] => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUSTeK Computer Inc. -> ASUS) HKLM-x32\...\Run: [Wireless Console 3] => C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [1601536 2010-09-24] () [Fichier non signé] HKLM-x32\...\Run: [USBChargerPlusTray] => C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [495536 2011-03-28] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) HKLM-x32\...\Run: [hpqSRMon] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [150528 2008-07-22] (Hewlett-Packard) [Fichier non signé] HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [49208 2011-05-10] (Hewlett-Packard Company -> Hewlett-Packard) HKLM-x32\...\Run: [Nuance PDF Reader-reminder] => C:\Program Files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe [328992 2008-11-03] (Nuance Communications, Inc. -> Nuance Communications, Inc.) HKLM-x32\...\Run: [SonicMasterTray] => C:\Program Files (x86)\ASUS\Sonic Focus\SonicFocusTray.exe [984400 2010-07-10] (Sonic Focus, Inc. -> Virage Logic Corporation / Sonic Focus) HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation -> Microsoft Corporation) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [67384 2017-01-13] (Apple Inc. -> Apple Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [601424 2018-07-07] (Oracle America, Inc. -> Oracle Corporation) HKLM-x32\...\Run: [Zwift] => C:\Program Files (x86)\Zwift\ZwiftLauncher.exe [18038128 2021-02-11] (Zwift, Inc. -> Zwift, Inc) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [10585376 2022-02-02] (Dropbox, Inc -> Dropbox, Inc.) HKLM-x32\...\Run: [IJNetworkScannerSelectorEX2] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe [271496 2017-11-02] (Canon Inc. -> CANON INC.) HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe [55334232 2022-01-25] (Google LLC -> Google, Inc.) HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe [55334232 2022-01-25] (Google LLC -> Google, Inc.) HKU\S-1-5-21-3621776348-93825552-4056938600-1000\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe [55334232 2022-01-25] (Google LLC -> Google, Inc.) HKU\S-1-5-21-3621776348-93825552-4056938600-1001\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [43816 2015-04-26] (Apple Inc. -> Apple Inc.) HKU\S-1-5-21-3621776348-93825552-4056938600-1001\...\Run: [OneDrive] => C:\Program Files (x86)\Microsoft OneDrive\OneDrive.exe [1942400 2021-02-27] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3621776348-93825552-4056938600-1001\...\Run: [ultracopier] => C:\Program Files\Supercopier\supercopier.exe [1144320 2016-01-02] (ultracopier.first-world.info) [Fichier non signé] HKU\S-1-5-21-3621776348-93825552-4056938600-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [43816 2015-04-26] (Apple Inc. -> Apple Inc.) HKU\S-1-5-21-3621776348-93825552-4056938600-1001\...\Run: [GoogleDriveSync] => "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart (Pas de fichier) HKU\S-1-5-21-3621776348-93825552-4056938600-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Rom\AppData\Local\Microsoft\Teams\Update.exe [2454184 2021-05-22] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKU\S-1-5-21-3621776348-93825552-4056938600-1001\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe [55334232 2022-01-25] (Google LLC -> Google, Inc.) HKU\S-1-5-21-3621776348-93825552-4056938600-1001\...\Run: [GarminExpress] => C:\Program Files (x86)\Garmin\Express\express.exe [31193432 2022-02-15] (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries) HKU\S-1-5-21-3621776348-93825552-4056938600-1001\...\MountPoints2: {638700e6-1a3a-11eb-af9d-14dae94bd6c1} - "E:\HiSuiteDownLoader.exe" HKU\S-1-5-21-3621776348-93825552-4056938600-1001\...\MountPoints2: {c5381a4f-3aec-11ec-afc8-14dae94bd6c1} - "E:\HiSuiteDownLoader.exe" HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\55.0.3.0\GoogleDriveFS.exe [55334232 2022-01-25] (Google LLC -> Google, Inc.) HKLM\...\Windows x64\Print Processors\Canon MG5600 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDCA.DLL [30208 2014-03-18] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Windows x64\Print Processors\Canon TS3300 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDG3.DLL [509952 2019-08-02] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Windows x64\Print Processors\hpzppw71: C:\Windows\System32\spool\prtprocs\x64\hpzppw71.dll [230400 2009-07-14] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation) HKLM\...\Print\Monitors\LIDIL hpzllw71: C:\WINDOWS\system32\hpzllw71.dll [53248 2009-07-14] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation) HKLM\...\Print\Monitors\pdfcmon: C:\WINDOWS\system32\pdfcmon.dll [65024 2012-03-14] (pdfforge GbR) [Fichier non signé] HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\98.0.4758.102\Installer\chrmstp.exe [2022-02-17] (Google LLC -> Google LLC) HKLM\Software\...\Authentication\Credential Providers: [{06FE45A8-6D92-44ba-A0F1-9A9BCDC8F5A7}] -> C:\Program Files (x86)\ASUS\SmartLogon\system\FaceCredentialProvider64.dll [2011-01-10] (ASUSTeK Computer Inc. -> ASUS) HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] -> AppInit_DLLs: C:\WINDOWS\system32\DriverStore\FileRepository\nvam.inf_amd64_1aae4f19e68d0780\nvinitx.dll => C:\WINDOWS\system32\DriverStore\FileRepository\nvam.inf_amd64_1aae4f19e68d0780\nvinitx.dll [208616 2017-12-12] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) AppInit_DLLs-x32: C:\WINDOWS\system32\DriverStore\FileRepository\nvam.inf_amd64_1aae4f19e68d0780\nvinit.dll => C:\WINDOWS\system32\DriverStore\FileRepository\nvam.inf_amd64_1aae4f19e68d0780\nvinit.dll [182272 2017-12-12] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AVG Secure VPN.lnk [2022-02-13] ShortcutTarget: AVG Secure VPN.lnk -> C:\Program Files\AVG\Secure VPN\Vpn.exe (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\BackupRemind.lnk [2017-03-29] ShortcutTarget: BackupRemind.lnk -> C:\Program Files (x86)\Wondershare\dr.fone toolkit pour Android\Addins\AndroidBackupRestore\BackupRemind.exe (Wondershare software CO., LIMITED -> Wondershare) Startup: C:\Users\Rom\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Screen Clipper and Launcher.lnk [2017-11-15] ShortcutTarget: OneNote 2010 Screen Clipper and Launcher.lnk -> C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) Startup: C:\Users\Rom\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Synology Cloud Station Backup.lnk [2022-02-16] ShortcutTarget: Synology Cloud Station Backup.lnk -> C:\Program Files (x86)\Synology\CloudStationBackup\bin\launcher.exe (Synology Inc. -> Synology Inc.) [Fichier non signé] Startup: C:\Users\Rom\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Synology Cloud Station Drive.lnk [2021-10-31] ShortcutTarget: Synology Cloud Station Drive.lnk -> C:\Program Files (x86)\Synology\CloudStation\bin\launcher.exe (Synology Inc. -> Synology Inc.) [Fichier non signé] HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {01C995FF-D178-4E7B-AC4A-9E950006A207} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -ObjectStoreRecoveryTask (Pas de fichier) Task: {03C93138-BF46-42EA-9675-1AFD431A8ACB} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23080304 2021-02-18] (Microsoft Corporation -> Microsoft Corporation) Task: {0837D897-84CB-4E30-A8DD-807937A81DFC} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe $(Arg0) (Pas de fichier) Task: {0F1FC558-90E6-41AA-8D37-4FBE69053762} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe -pscn 0 (Pas de fichier) Task: {11D22D19-6775-4356-A2F3-775B742A3067} - System32\Tasks\ASUS Secure Delete => C:\Program Files\ASUS\ASUS Secure Delete\ADDEL.exe [541696 2011-01-24] () [Fichier non signé] Task: {148318FC-5974-4508-A415-B3AFD16E5DDB} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe /OCURActivate (Pas de fichier) Task: {16C686BB-011A-4C44-8941-40D2CC2D982F} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969} Task: {17E972F6-2DBA-4366-B60F-8E09F9B66766} - System32\Tasks\AVG Secure VPN Update => C:\Program Files\AVG\Secure VPN\VpnUpdate.exe [1263928 2022-01-31] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) Task: {29308477-8F7E-4D4F-92D5-F1534E61B6F5} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe /DoActivateWindowsSearch (Pas de fichier) Task: {3417577E-E592-4267-A192-932A77B13673} - System32\Tasks\AVG\AVG Secure VPN Update => C:\Program Files\Common Files\AVG\Icarus\avg-vpn\icarus.exe [6500152 2022-01-21] (AVG Technologies USA, LLC -> AVG Technologies) Task: {3984F83B-0C71-4D53-BA0C-51C3A6BA49C8} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe -crl -hms -pscn 15 (Pas de fichier) Task: {3C9616B2-742C-4820-AFAE-F3D2459E9677} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe /PBDADiscovery (Pas de fichier) Task: {3D966D87-5FE5-4FBC-8E90-DB0F48E454DB} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0) (Pas de fichier) Task: {3E3E65EA-6693-4ACC-947D-206853F50D65} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe /DoReindexSearchRoot (Pas de fichier) Task: {42145BE5-4059-431F-919A-1A381C5966DE} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -SqlLiteRecoveryTask (Pas de fichier) Task: {43521854-6EA7-483A-9AD6-12A514B84ABD} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [26968 2022-02-15] (Garmin International, Inc. -> ) Task: {452C415C-46EF-4C50-B314-C5BC7CBD541A} - System32\Tasks\ASUS Patch 10430001 => C:\Windows\AsPatch10430001.exe [154240 2010-07-29] (ASUSTeK Computer Inc. -> ) Task: {4695F474-79FA-427C-BB34-0B567902585F} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [114000 2021-03-04] (Microsoft Corporation -> Microsoft Corporation) Task: {486D715E-6AA2-44CF-BC48-B6990CBB53C6} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControlsMigration => {343D770D-7788-47C2-B62A-B7C4CED925CB} Task: {4E13D73E-5694-4A4D-B0A0-58BB47F251A9} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe (Pas de fichier) Task: {4F62E1BC-0344-4FA3-B999-824EB4629D59} - System32\Tasks\ATKOSD2 => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [5732992 2010-08-17] (ASUSTeK Computer Inc. -> ASUS) Task: {516115C1-A021-4496-B84A-28EE384BC66A} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe [1821968 2021-04-29] (AVG Technologies USA, LLC -> AVG Technologies) Task: {51FC6682-FEFC-47E3-918E-A2B328C79493} - System32\Tasks\ASUS P4G => C:\Program Files\P4G\BatteryLife.exe [977024 2011-03-07] (ASUSTeK Computer Inc. -> ASUS) Task: {5B42DD9C-5A26-4F27-BB95-34603F0997E5} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControls => {DFA14C43-F385-4170-99CC-1B7765FA0E4A} Task: {62DA0FAA-B863-4D1F-B10E-F329BBDE417B} - System32\Tasks\AsusVibeSchedule => C:\Program Files (x86)\Asus\AsusVibe\AsusVibeLauncher.exe [1957040 2012-09-27] (ASUSTeK Computer Inc. -> ) [Fichier non signé] Task: {660EEE44-14E4-44A0-BCD8-FB0A9CDD8C4D} - System32\Tasks\Antivirus Emergency Update => C:\Program Files (x86)\AVG\Antivirus\AvEmUpdate.exe [5002680 2022-01-04] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) Task: {6FECF9BE-AED8-4627-80ED-91FF5361960F} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0) (Pas de fichier) Task: {773492A6-4F08-4DAF-9C1B-778BC17ACAED} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0) (Pas de fichier) Task: {78588675-6CF3-4E50-B5B1-1EC34EAA2F6B} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0) (Pas de fichier) Task: {78823C90-9A38-4B3A-A476-4FD59D7C0A70} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316} Task: {7CE3F3E0-3E4E-47D1-9EDA-BC6D0E9CE54C} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDFE067B1} Task: {7DDAF082-5EA3-4637-A4B4-0616AC0F0BBE} - System32\Tasks\AVG\AVG Secure VPN Bug Report => C:\Program Files\AVG\Secure VPN\AvBugReport.exe [4761400 2022-01-31] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) -> --send "dumps|report" --silent --product 12 --programpath "C:\Program Files\AVG\Secure VPN" --configpath "C:\ProgramData\AVG\Secure VPN" --path "C:\ProgramData\AVG\Secure VPN\log" --path "C:\ProgramData\AVG\Icarus\Logs" --logpath "C:\ProgramData\AVG\Secure VPN\log" --guid 3f33ca91-938f-4657-8943-0add1a30c8a8 Task: {7DDF9673-8D0B-4652-B795-1BEAD1206B65} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery (Pas de fichier) Task: {8893AF11-3C31-4045-9DAF-8BF7961A5175} - System32\Tasks\ASUS Live Update => C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe [51768 2007-11-30] (ASUSTeK Computer Inc. -> ) Task: {95382C7C-8399-4A02-8E91-95B17CCB50E3} - System32\Tasks\Mozilla\Firefox Default Browser Agent A4F1AFE6929DA26E => C:\Users\Rom\AppData\Local\Mozilla Firefox\default-browser-agent.exe do-task Task: {99ADB0CA-672E-4FEC-86C4-E8DC868BFA5F} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43DA-BFD7-FBEEA2180A1E} Task: {9EA97E38-70C4-4546-900C-F7CF63F635C9} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1133488 2021-03-04] (Microsoft Corporation -> Microsoft Corporation) Task: {A397FF6E-99DE-4015-B654-D23CB55191A3} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-12-14] (Dropbox, Inc -> Dropbox, Inc.) Task: {AA91A9A5-DD94-466D-B958-9B267B69B339} - System32\Tasks\AVG\AVG TuneUp Update => C:\Program Files\Common Files\AVG\Icarus\avg-tu\icarus.exe [6500152 2022-01-18] (AVG Technologies USA, LLC -> AVG Technologies) Task: {AA921623-B84A-4EC8-A6DA-5D46323FC6D9} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0) (Pas de fichier) Task: {ABD7A327-A33A-4329-9B36-690ADF6C66CD} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files (x86)\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [2862440 2021-02-27] (Microsoft Corporation -> Microsoft Corporation) Task: {B0CBAB43-44FC-469B-A4CE-87426761FDCE} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371} Task: {B32354E6-5937-4671-8B8D-0867669A1145} - System32\Tasks\ASUS SmartLogon Console Sensor => C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe [305792 2010-11-15] (ASUSTeK Computer Inc. -> ASUS) Task: {C3BFB5C7-62EA-4646-8D02-5480D653567C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-31] (Google Inc -> Google Inc.) Task: {C778374C-94FE-41B0-B705-5FC952201AC0} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe -PvrSchedule (Pas de fichier) Task: {D02FCF48-91BA-424B-89AD-30C91DFD2D45} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} Task: {D113CD1C-080C-478A-8878-64E52E588413} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [114000 2021-03-04] (Microsoft Corporation -> Microsoft Corporation) Task: {DA42B67F-EF7D-4E6B-AEB0-BC711C1C7703} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-12-14] (Dropbox, Inc -> Dropbox, Inc.) Task: {DD548504-31EE-43FF-A573-1E9BCB56DC76} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe /RestartRecording (Pas de fichier) Task: {E2C9DB2C-E6DF-4214-9035-617D37295C1D} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4F47-879B-29A80C355D61} Task: {E3671EDD-0042-43FB-A853-76A1D3A216AC} - System32\Tasks\AVG\AVG TuneUp BugReport => C:\Program Files\AVG\TuneUp\AvBugReport.exe [4760376 2022-01-24] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) -> --send "dumps|report" --silent --product 74 --programpath "C:\Program Files\AVG\TuneUp\Setup\.." --configpath "C:\Program Files\AVG\TuneUp\Setup" --path "C:\ProgramData\AVG\TuneUp\log" --path "C:\ProgramData\AVG\Icarus\Logs" --guid eaa9e83a-14ff-4c0f-bff2-4f8e93450f56 Task: {E5CA8129-3AE7-42AC-A227-29E5F41BAD15} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-31] (Google Inc -> Google Inc.) Task: {E959E007-A71C-4952-8EA8-22DE146D6227} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery (Pas de fichier) Task: {EDC8512B-7195-419D-8DA0-28D74D33851F} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23080304 2021-02-18] (Microsoft Corporation -> Microsoft Corporation) Task: {F0496437-71B1-4E96-9E9C-3BC2F52CDE46} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -PvrRecoveryTask (Pas de fichier) Task: {F38A2A0F-1269-466C-80DA-F8597FD7FF44} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe /StartRecording (Pas de fichier) Task: {FACB8164-0888-403B-B4E6-7F59329EA90F} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe /DRMInit (Pas de fichier) Task: {FBC8485F-A585-489F-8E2C-C65FEABC1BEF} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -MediaCenterRecoveryTask (Pas de fichier) Task: {FFEE4F98-789F-4BC5-9EBF-91D4AC658C46} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe /DoConfigureInternetTimeService (Pas de fichier) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{18130c32-aae1-4a36-bda8-03de7794aa49}: [NameServer] 192.168.10.110 194.51.3.56 Tcpip\..\Interfaces\{310920ad-017b-4630-8cd8-14526ffaae91}: [NameServer] 192.168.10.110 0.0.0.0 Tcpip\..\Interfaces\{417d13b0-65cf-45a2-bb48-178c6c772167}: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{5034f684-d8fa-46b7-945e-bd536cc6d8f9}: [NameServer] 192.168.10.110 0.0.0.0 Tcpip\..\Interfaces\{5a8e5edf-7f1e-4923-9276-7339cea9de89}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{7050ce29-fa14-49c4-9a69-bca332c79ef0}: [NameServer] 192.168.10.110 194.51.3.56 Tcpip\..\Interfaces\{8f2d9ac9-10d4-4608-8fbe-a9e59f88b1b3}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{a3dd7ac0-f74d-4374-a68e-2be8a4fc4652}: [NameServer] 192.168.10.110 194.51.3.56 Tcpip\..\Interfaces\{b2bec3b7-f657-4724-afdf-9d825b8ed60b}: [NameServer] 192.168.10.110 0.0.0.0 Tcpip\..\Interfaces\{b489ccb2-fbe4-4e75-9889-158075ffec84}: [NameServer] 100.120.54.1 Tcpip\..\Interfaces\{c3b3c96d-98af-4fc6-8f2a-d74df2ebbc16}: [DhcpNameServer] 172.20.10.1 Tcpip\..\Interfaces\{ce2c8c4d-2f6e-4d3e-b20a-d142d249d4d2}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{dd8c4446-bf62-4630-9166-e5df0e59aea3}: [DhcpNameServer] 192.168.1.254 Edge: ======= Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)] Edge Extension: (Pas de nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\WINDOWS\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [non trouvé(e)] Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)] Edge Extension: (Pas de nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\WINDOWS\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [non trouvé(e)] Edge DefaultProfile: Default Edge Profile: C:\Users\Rom\AppData\Local\Microsoft\Edge\User Data\Default [2022-02-16] Edge HomePage: Default -> hxxp://go.microsoft.com/fwlink/p/?LinkId=619797&pc=UE13&ocid=UE13DHP FireFox: ======== FF DefaultProfile: xuzayc34.default FF ProfilePath: C:\Users\Rom\AppData\Roaming\Mozilla\Firefox\Profiles\jq8v1o45.default-release [2021-04-20] FF ProfilePath: C:\Users\Rom\AppData\Roaming\Mozilla\Firefox\Profiles\xuzayc34.default [2021-04-20] FF Homepage: Mozilla\Firefox\Profiles\xuzayc34.default -> hxxps://r.orange.fr/r/Oodc_oi_odc?ref=O_OI_defaultPage_FFe64_w10e64_odc FF Extension: (Petitscailloux) - C:\Users\Rom\AppData\Roaming\Mozilla\Firefox\Profiles\xuzayc34.default\Extensions\contact@petitscailloux.com.xpi [2013-09-01] [] [non signé] FF Extension: (barre d'outils Orange) - C:\Users\Rom\AppData\Roaming\Mozilla\Firefox\Profiles\xuzayc34.default\Extensions\toolbar@Orange.fr [2015-03-15] [] [non signé] FF SearchPlugin: C:\Users\Rom\AppData\Roaming\Mozilla\Firefox\Profiles\xuzayc34.default\searchplugins\orange.xml [2014-10-20] FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Extension: (HP Smart Web Printing) - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2012-08-22] [] [non signé] FF HKU\S-1-5-21-3621776348-93825552-4056938600-1001\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_465.dll [2021-03-04] (Adobe Inc. -> ) FF Plugin: @garmin.com/GpsControl -> C:\Program Files\Garmin GPS Plugin\npGarmin.dll [2013-10-09] (Garmin International, Inc. -> GARMIN Corp.) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_465.dll [2021-03-04] (Adobe Inc. -> ) FF Plugin-x32: @canon.com/MycameraPlugin -> C:\Program Files (x86)\Canon\MyCamera Download Plugin\NPCIG.dll [2008-10-15] (CANON INC.) [Fichier non signé] FF Plugin-x32: @garmin.com/GpsControl -> C:\Program Files (x86)\Garmin GPS Plugin\npGarmin.dll [2013-10-09] (Garmin International, Inc. -> GARMIN Corp.) FF Plugin-x32: @java.com/DTPlugin,version=11.201.2 -> C:\Program Files (x86)\Java\jre1.8.0_201\bin\dtplugin\npDeployJava1.dll [2021-03-04] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.201.2 -> C:\Program Files (x86)\Java\jre1.8.0_201\bin\plugin2\npjp2.dll [2021-03-04] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-03-04] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-12-04] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [Fichier non signé] FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-12-04] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [Fichier non signé] FF Plugin-x32: ZEON/PDF,version=2.0 -> C:\Program Files (x86)\Nuance\PDF Reader\bin\nppdf.dll [2010-01-23] (Zeon Corporation -> Zeon Corporation) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\Rom\AppData\Local\Google\Chrome\User Data\Default [2022-02-18] CHR DownloadDir: C:\_Test_DL CHR Notifications: Default -> hxxps://drive.google.com CHR Extension: (Lanceur d'applications pour Drive (par Google)) - C:\Users\Rom\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2021-05-22] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Rom\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-30] CHR Profile: C:\Users\Rom\AppData\Local\Google\Chrome\User Data\System Profile [2021-04-18] CHR HKU\S-1-5-21-3621776348-93825552-4056938600-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\Rom\AppData\Local\Google\Drive\user_default\apdfllckaahabafndbhieahigkjlhalf_live.crx CHR HKU\S-1-5-21-3621776348-93825552-4056938600-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 AdobeFlashPlayerUpdateSvc; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2021-03-04] (Adobe Inc. -> Adobe) R2 AVG Antivirus; C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe [485816 2022-01-04] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R2 AVG Firewall; C:\Program Files (x86)\AVG\Antivirus\afwServ.exe [1789880 2022-01-04] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R2 AVG Tools; C:\Program Files (x86)\AVG\Antivirus\avgToolsSvc.exe [485816 2022-01-04] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R3 avgbIDSAgent; C:\Program Files (x86)\AVG\Antivirus\aswidsagent.exe [8517744 2022-01-04] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R2 AvgWscReporter; C:\Program Files (x86)\AVG\Antivirus\wsc_proxy.exe [109480 2021-07-17] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R2 CleanupPSvc; C:\Program Files\AVG\TuneUp\TuneupSvc.exe [13745976 2022-01-24] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) S4 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8988552 2021-02-22] (Microsoft Corporation -> Microsoft Corporation) S4 Cloud Station Backup VSS Service x64; C:\Program Files (x86)\Synology\CloudStationBackup\bin\vss-service-x64.exe [287256 2017-08-23] (Synology Inc. -> ) [Fichier non signé] S4 Cloud Station Drive VSS Service x64; C:\Program Files (x86)\Synology\CloudStation\bin\vss-service-x64.exe [287256 2017-08-23] (Synology Inc. -> ) [Fichier non signé] S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-12-14] (Dropbox, Inc -> Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-12-14] (Dropbox, Inc -> Dropbox, Inc.) R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [44328 2022-02-02] (Dropbox, Inc -> Dropbox, Inc.) S4 FileSyncHelper; C:\Program Files (x86)\Microsoft OneDrive\21.016.0124.0003\FileSyncHelper.exe [2198376 2021-02-27] (Microsoft Corporation -> Microsoft Corporation) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [299680 2021-07-27] (HP Inc. -> HP Inc.) R3 hpqcxs08; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll [249344 2009-09-20] (Hewlett-Packard Co.) [Fichier non signé] R2 hpqddsvc; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll [133120 2009-09-20] (Hewlett-Packard Co.) [Fichier non signé] R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [190784 2019-07-03] (Huawei Technologies Co., Ltd. -> ) [Fichier non signé] S4 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [399296 2019-11-28] (Canon Inc. -> ) S2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [Fichier non signé] S4 OneDrive Updater Service; C:\Program Files (x86)\Microsoft OneDrive\21.016.0124.0003\OneDriveUpdaterService.exe [2573160 2021-02-27] (Microsoft Corporation -> Microsoft Corporation) S2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [Fichier non signé] R2 SecureVPN; C:\Program Files\AVG\Secure VPN\VpnSvc.exe [9291064 2022-01-31] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) S3 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [752224 2019-12-17] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) S3 ss_conn_service2; C:\Program Files (x86)\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe [933304 2019-12-17] (Samsung Electronics Co., Ltd. -> DEVGURU Co., LTD.) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.6-0\NisSrv.exe [3294680 2020-03-22] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.6-0\MsMpEng.exe [103168 2020-03-22] (Microsoft Windows Publisher -> Microsoft Corporation) S4 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.2.223\WsAppService.exe [473312 2017-03-20] (Wondershare Technology Co.,Ltd -> Wondershare) S4 WsDrvInst; C:\Program Files (x86)\Wondershare\dr.fone toolkit pour Android\Library\DriverInstaller\DriverInstall.exe [119008 2017-03-20] (Wondershare Technology Co.,Ltd -> Wondershare) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R0 assd; C:\Windows\System32\Drivers\assd.sys [27264 2010-04-28] (ASUSTeK Computer Inc. -> ASUS Corporation) R1 avgArPot; C:\WINDOWS\System32\drivers\avgArPot.sys [222248 2022-01-04] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R1 avgbidsdriver; C:\WINDOWS\System32\drivers\avgbidsdriver.sys [369288 2022-01-04] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R0 avgbidsh; C:\WINDOWS\System32\drivers\avgbidsh.sys [253064 2022-01-04] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R0 avgbuniv; C:\WINDOWS\System32\drivers\avgbuniv.sys [100488 2022-01-04] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R0 avgElam; C:\WINDOWS\System32\drivers\avgElam.sys [21960 2021-10-17] (Microsoft Windows Early Launch Anti-malware Publisher -> AVG Technologies CZ, s.r.o.) R1 avgKbd; C:\WINDOWS\System32\drivers\avgKbd.sys [42552 2022-01-04] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R1 avgMonFlt; C:\WINDOWS\System32\drivers\avgMonFlt.sys [186424 2022-01-04] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R1 avgNetHub; C:\WINDOWS\System32\drivers\avgNetHub.sys [540192 2022-01-04] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R1 avgRdr; C:\WINDOWS\System32\drivers\avgRdr2.sys [109056 2022-01-04] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R0 avgRvrt; C:\WINDOWS\System32\drivers\avgRvrt.sys [84120 2022-01-04] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R1 avgSnx; C:\WINDOWS\System32\drivers\avgSnx.sys [853944 2022-01-04] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R1 avgSP; C:\WINDOWS\System32\drivers\avgSP.sys [545312 2022-01-04] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R2 avgStm; C:\WINDOWS\System32\drivers\avgStm.sys [215576 2022-01-04] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R3 avgTap; C:\WINDOWS\System32\drivers\avgTap.sys [54888 2021-03-04] (AVG Technologies CZ, s.r.o. -> The OpenVPN Project) R0 avgVmm; C:\WINDOWS\System32\drivers\avgVmm.sys [318904 2022-01-04] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R3 avgWintun; C:\WINDOWS\System32\drivers\avgWintun.sys [37136 2021-07-18] (AVG Technologies USA, LLC -> WireGuard LLC) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Fichier non signé] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Fichier non signé] S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2019-07-03] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) S3 FLxHCIc; C:\WINDOWS\System32\drivers\FLxHCIc.sys [177152 2011-04-08] (Microsoft Windows Hardware Compatibility Publisher -> Fresco Logic) S3 FLxHCIh; C:\WINDOWS\System32\drivers\FLxHCIh.sys [56320 2011-04-08] (Microsoft Windows Hardware Compatibility Publisher -> Fresco Logic) R1 googledrivefs3688; C:\WINDOWS\System32\DRIVERS\googledrivefs3688.sys [381456 2021-12-14] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.) S3 hitmanpro37; C:\WINDOWS\system32\drivers\hitmanpro37.sys [54736 2016-10-09] (SurfRight B.V. -> ) R3 kbfiltr; C:\WINDOWS\System32\drivers\kbfiltr.sys [15416 2009-07-20] (ASUSTeK Computer Inc. -> ) S3 libusb0; C:\WINDOWS\system32\DRIVERS\libusb0.sys [44480 2011-05-17] (Akeo Consulting -> hxxp://libusb-win32.sourceforge.net) R2 npf; C:\WINDOWS\System32\drivers\npf.sys [35344 2011-02-11] (CACE Technologies, Inc. -> CACE Technologies, Inc.) S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [45960 2020-03-22] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [391392 2020-03-22] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [59104 2020-03-22] (Microsoft Windows -> Microsoft Corporation) R1 ZAM; C:\WINDOWS\System32\drivers\zam64.sys [203680 2016-10-09] (Zemana Ltd. -> Zemana Ltd.) R1 ZAM_Guard; C:\WINDOWS\System32\drivers\zamguard64.sys [203680 2016-10-09] (Zemana Ltd. -> Zemana Ltd.) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Trois mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-02-18 00:08 - 2022-02-18 00:11 - 000044562 _____ C:\Users\Rom\Desktop\FRST.txt 2022-02-18 00:06 - 2022-02-18 00:10 - 000000000 ____D C:\FRST 2022-02-18 00:04 - 2022-02-18 00:04 - 000534116 _____ C:\Users\Rom\Desktop\ZHPDiag.txt 2022-02-17 23:39 - 2022-02-17 23:40 - 002312192 _____ (Farbar) C:\Users\Rom\Desktop\FRST64.exe 2022-02-17 23:37 - 2022-02-17 23:37 - 000000909 _____ C:\Users\Rom\Desktop\ZHPSuite.lnk 2022-02-17 23:37 - 2022-02-17 23:37 - 000000000 ____D C:\Users\Rom\AppData\Local\ZHP 2022-02-17 23:33 - 2022-02-17 23:33 - 003479704 _____ (Nicolas Coolman) C:\Users\Rom\Desktop\ZHPSuite.exe 2022-02-16 21:07 - 2022-02-16 21:07 - 000000000 ___HD C:\$WinREAgent 2022-02-16 20:20 - 2022-02-16 20:20 - 000001965 _____ C:\Users\Public\Desktop\Garmin Express.lnk 2022-02-16 20:20 - 2022-02-16 20:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin 2022-02-13 17:01 - 2022-02-13 17:01 - 000001712 _____ C:\Users\Public\Desktop\HP Print and Scan Doctor.lnk 2022-02-13 17:01 - 2022-02-13 17:01 - 000000000 ____D C:\Users\Rom\AppData\Roaming\HPPSDr 2022-02-13 16:59 - 2022-02-13 16:59 - 000000000 ____D C:\HP 2022-02-06 11:57 - 2022-02-06 11:57 - 000036651 _____ C:\Users\Rom\Downloads\Facture_Free_202202_23806217_1093770451.pdf 2022-02-05 10:41 - 2022-02-05 10:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2022-02-02 03:36 - 2022-02-02 03:36 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-stable.sys 2022-02-02 03:36 - 2022-02-02 03:36 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-dev.sys 2022-02-02 03:36 - 2022-02-02 03:36 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-canary.sys 2022-02-02 03:36 - 2022-02-02 03:36 - 000044328 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe 2022-01-25 21:20 - 2022-01-25 21:20 - 000007538 _____ C:\Users\Rom\Downloads\Nanoblock_logo.jpeg 2022-01-16 19:28 - 2022-01-16 19:28 - 000523776 _____ (curl, hxxps://curl.se/) C:\WINDOWS\system32\curl.exe 2022-01-16 19:28 - 2022-01-16 19:28 - 000464384 _____ (curl, hxxps://curl.se/) C:\WINDOWS\SysWOW64\curl.exe 2022-01-16 19:28 - 2022-01-16 19:28 - 000011797 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2022-01-16 16:21 - 2022-01-16 16:21 - 000000000 ____D C:\Users\Rom\Apple 2022-01-04 18:03 - 2022-01-04 18:03 - 000215576 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgStm.sys 2022-01-04 18:03 - 2022-01-04 18:02 - 000336824 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\avgBoot.exe 2021-12-22 20:24 - 2021-12-14 07:44 - 000381456 _____ (Google, Inc.) C:\WINDOWS\system32\Drivers\googledrivefs3688.sys 2021-12-19 04:02 - 2021-12-19 04:02 - 000000000 ____D C:\WINDOWS\SystemTemp 2021-12-18 21:30 - 2021-12-18 21:30 - 000223744 _____ C:\WINDOWS\SysWOW64\TpmTool.exe 2021-12-18 21:25 - 2021-12-18 21:25 - 000272384 _____ C:\WINDOWS\system32\TpmTool.exe 2021-12-18 21:25 - 2021-12-18 21:25 - 000162816 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe 2021-12-18 11:22 - 2021-12-18 11:22 - 000002043 _____ C:\Users\Rom\Desktop\AVG AntiVirus Gratuit.lnk 2021-11-29 23:05 - 2021-11-29 23:05 - 000044925 _____ C:\Users\Rom\Downloads\Bon de livraison smart.pdf ==================== Trois mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-02-18 00:08 - 2016-10-09 20:38 - 000236915 _____ C:\WINDOWS\ZAM.krnl.trace 2022-02-18 00:08 - 2016-10-09 20:38 - 000211746 _____ C:\WINDOWS\ZAM_Guard.krnl.trace 2022-02-18 00:06 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-02-18 00:04 - 2015-04-04 21:32 - 000000000 ____D C:\Users\Rom\AppData\Roaming\ZHP 2022-02-18 00:03 - 2020-10-11 00:32 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2022-02-17 23:58 - 2011-04-13 03:33 - 000000000 ____D C:\Program Files (x86)\Google 2022-02-17 23:40 - 2020-12-20 23:05 - 000000000 ____D C:\_Test_DL 2022-02-17 22:31 - 2020-10-10 22:06 - 000002444 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-02-17 22:31 - 2020-10-10 22:06 - 000002282 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2022-02-17 22:31 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2022-02-17 22:31 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2022-02-17 22:24 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2022-02-17 22:02 - 2020-01-24 23:11 - 000000000 ____D C:\Program Files (x86)\Dropbox 2022-02-16 21:05 - 2018-06-30 15:03 - 000000000 ____D C:\Users\Rom\AppData\Local\CrashDumps 2022-02-16 21:02 - 2021-07-13 22:44 - 000002762 _____ C:\WINDOWS\system32\Tasks\GarminUpdaterTask 2022-02-16 20:52 - 2017-07-26 17:48 - 000000000 ____D C:\ProgramData\NVIDIA 2022-02-16 20:52 - 2015-10-31 13:49 - 000000000 ____D C:\ProgramData\Avg 2022-02-16 20:50 - 2020-10-11 01:20 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2022-02-16 20:50 - 2020-10-11 00:32 - 000008192 ___SH C:\DumpStack.log.tmp 2022-02-16 20:50 - 2020-01-24 23:11 - 000001206 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job 2022-02-16 20:50 - 2020-01-24 23:11 - 000001202 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job 2022-02-16 20:49 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2022-02-16 20:35 - 2018-02-01 22:29 - 000000000 ____D C:\Users\Rom\AppData\Local\CloudStationBackup 2022-02-16 20:26 - 2020-10-11 00:40 - 000000000 ____D C:\Users\Rom 2022-02-16 20:23 - 2011-10-17 19:50 - 000000000 ____D C:\ProgramData\Garmin 2022-02-16 20:21 - 2016-09-25 21:50 - 000000000 ____D C:\ProgramData\Package Cache 2022-02-16 20:20 - 2011-10-17 19:50 - 000000000 ____D C:\Program Files (x86)\Garmin 2022-02-14 21:49 - 2021-04-24 08:19 - 000003518 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2022-02-14 21:49 - 2021-04-24 08:19 - 000003294 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2022-02-14 21:49 - 2020-10-11 01:20 - 000003618 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineUA 2022-02-14 21:49 - 2020-10-11 01:20 - 000003562 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-02-14 21:49 - 2020-10-11 01:20 - 000003394 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineCore 2022-02-14 21:49 - 2020-10-11 01:20 - 000003338 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2022-02-14 21:49 - 2020-10-11 01:20 - 000003262 _____ C:\WINDOWS\system32\Tasks\Antivirus Emergency Update 2022-02-14 21:49 - 2020-10-11 01:20 - 000000000 ____D C:\WINDOWS\system32\Tasks\AVAST Software 2022-02-13 17:02 - 2012-08-22 13:47 - 000000000 ____D C:\ProgramData\HP 2022-02-13 17:00 - 2012-08-22 13:51 - 000000000 ____D C:\Program Files (x86)\HP 2022-02-13 16:48 - 2021-02-19 20:09 - 000000000 ____D C:\Users\Rom\AppData\Local\Notepad 2022-02-13 16:47 - 2011-10-18 23:38 - 000000000 ____D C:\Users\Rom\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2022-02-13 16:47 - 2011-10-18 23:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2022-02-13 16:47 - 2011-10-18 23:38 - 000000000 ____D C:\Program Files (x86)\WinRAR 2022-02-13 16:43 - 2021-03-04 22:52 - 000003974 _____ C:\WINDOWS\system32\Tasks\AVG Secure VPN Update 2022-02-13 16:32 - 2013-08-07 14:40 - 000000000 ____D C:\WINDOWS\system32\MRT 2022-02-13 15:11 - 2011-10-25 05:42 - 149611728 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2022-02-13 15:02 - 2018-05-12 09:52 - 000000000 ____D C:\Users\Rom\AppData\Local\PlaceholderTileLogoFolder 2022-02-09 09:19 - 2021-09-24 20:55 - 000002059 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk 2022-02-09 09:19 - 2021-09-24 20:55 - 000001901 _____ C:\Users\Default\Desktop\Google Slides.lnk 2022-02-09 09:19 - 2021-09-24 20:55 - 000001901 _____ C:\Users\Default\Desktop\Google Sheets.lnk 2022-02-09 09:19 - 2021-09-24 20:55 - 000001889 _____ C:\Users\Default\Desktop\Google Docs.lnk 2022-02-09 09:19 - 2019-11-15 00:26 - 000001865 _____ C:\Users\Rom\Desktop\Google Drive.lnk 2022-02-05 10:42 - 2020-10-11 00:59 - 001814184 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2022-02-05 10:42 - 2019-12-07 15:49 - 000793016 _____ C:\WINDOWS\system32\perfh00C.dat 2022-02-05 10:42 - 2019-12-07 15:49 - 000150146 _____ C:\WINDOWS\system32\perfc00C.dat 2022-02-05 10:42 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2022-01-29 19:41 - 2021-06-16 08:37 - 005033184 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2022-01-29 19:34 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2022-01-29 19:34 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2022-01-29 19:34 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources 2022-01-29 19:34 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup 2022-01-29 19:34 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2022-01-29 19:34 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2022-01-29 19:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr ==================== Fichiers à la racine de certains dossiers ======== 2009-07-29 06:21 - 2009-07-28 19:31 - 000000223 _____ () C:\ProgramData\setwallpaper.cmd 2009-07-29 06:21 - 2009-07-23 02:04 - 000024576 _____ () C:\ProgramData\SetWallpaper.exe 2019-01-16 20:58 - 2019-01-16 20:58 - 003301760 _____ () C:\Users\Rom\ZHPCleaner.exe 2019-01-17 09:39 - 2019-01-17 09:39 - 003191680 _____ () C:\Users\Rom\ZHPDiag3.exe 2021-04-19 17:09 - 2021-04-19 17:09 - 003468440 _____ (Nicolas Coolman) C:\Users\Rom\ZHPSuite.exe 2019-03-30 20:46 - 2019-03-30 20:46 - 007505920 _____ () C:\Program Files (x86)\GUT6A73.tmp 2021-01-30 19:36 - 2021-01-30 19:36 - 000000000 _____ () C:\Program Files (x86)\GUTB483.tmp 2014-04-18 17:54 - 2014-06-03 06:38 - 000003744 _____ () C:\Program Files (x86)\Mozilla Firefoxsafeguard-secure-search.xml 2013-12-13 12:08 - 2013-12-16 19:19 - 000000132 _____ () C:\Users\Rom\AppData\Roaming\Adobe PNG Format CS5 Prefs 2011-10-18 23:38 - 2011-10-18 23:38 - 000000000 ____H () C:\Users\Rom\AppData\Roaming\K1jG8f8KihtF 2011-10-18 23:38 - 2011-10-19 00:09 - 000000679 _____ () C:\Users\Rom\AppData\Roaming\logs 2013-08-28 20:49 - 2013-08-28 20:49 - 000007638 _____ () C:\Users\Rom\AppData\Local\Resmon.ResmonCfg ==================== SigCheckExt ========================= 2011-08-11 16:54 - 2011-10-17 12:01 - 000045056 _____ C:\WINDOWS\system32\acovcnt.exe 2016-07-16 12:42 - 2016-07-16 12:42 - 000073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AllJoynDiscoveryPlugin.dll 2013-05-12 12:01 - 2013-05-12 12:01 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-05-12 12:01 - 2013-05-12 12:01 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-05-12 12:01 - 2013-05-12 12:01 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-05-12 12:01 - 2013-05-12 12:01 - 000005632 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-05-12 12:02 - 2013-05-12 12:02 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-05-12 12:02 - 2013-05-12 12:02 - 000009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-05-12 12:02 - 2013-05-12 12:02 - 000005632 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-05-12 12:02 - 2013-05-12 12:02 - 000004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2013-05-12 12:02 - 2013-05-12 12:02 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-version-l1-1-0.dll 2016-07-23 21:13 - 2016-07-01 04:57 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpreference.exe 2015-10-30 08:19 - 2015-10-30 08:19 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\DafCdp.dll 2017-04-12 22:19 - 2017-03-28 06:37 - 000031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\DdcWnsListener.dll 2010-07-23 09:55 - 2010-07-23 09:55 - 000032768 _____ (Hewlett-Packard Company) C:\WINDOWS\system32\hpbmiapi.dll 2010-07-23 09:55 - 2010-07-23 09:55 - 000033280 _____ (Hewlett-Packard Company) C:\WINDOWS\system32\hpboid.dll 2010-07-23 09:55 - 2010-07-23 09:55 - 000009216 _____ (Hewlett-Packard Company) C:\WINDOWS\system32\hpboidps.dll 2010-07-23 09:55 - 2010-07-23 09:55 - 000057344 _____ (Hewlett-Packard Company) C:\WINDOWS\system32\hpbpro.dll 2010-07-23 09:55 - 2010-07-23 09:55 - 000009728 _____ (Hewlett-Packard Company) C:\WINDOWS\system32\hpbprops.dll 2010-01-19 15:12 - 2010-01-19 15:12 - 000070144 _____ (Hewlett-Packard) C:\WINDOWS\system32\HPBWSDR.DLL 2009-11-27 12:15 - 2009-11-27 12:15 - 000228864 _____ (hp) C:\WINDOWS\system32\hplbddrv.dll 2010-08-06 11:15 - 2010-08-06 11:15 - 000079872 _____ (Hewlett-Packard) C:\WINDOWS\system32\HPZidr12.dll 2010-08-06 11:15 - 2010-08-06 11:15 - 000071680 _____ (Hewlett-Packard) C:\WINDOWS\system32\HPZinw12.dll 2010-08-06 11:15 - 2010-08-06 11:15 - 000089600 _____ (Hewlett-Packard) C:\WINDOWS\system32\HPZipm12.dll 2010-08-06 11:15 - 2010-08-06 11:15 - 000054784 _____ (Hewlett-Packard) C:\WINDOWS\system32\HPZipr12.dll 2010-08-06 11:15 - 2010-08-06 11:15 - 000045056 _____ (Hewlett-Packard) C:\WINDOWS\system32\hpzipt12.dll 2010-08-06 11:15 - 2010-08-06 11:15 - 000030208 _____ (Hewlett-Packard) C:\WINDOWS\system32\hpzisn12.dll 2017-03-15 21:05 - 2017-03-04 07:26 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\indexeddbserver.dll 2016-07-16 12:43 - 2016-07-16 23:45 - 003584000 _____ (Microsoft Corporation) C:\WINDOWS\system32\InkAnalysisLegacyCom.dll 2011-05-02 22:23 - 2011-05-02 22:23 - 001793024 _____ (Intel(R) Corporation) C:\WINDOWS\system32\iwmssvc.dll 2016-07-13 22:50 - 2016-06-10 21:11 - 001359360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmlmedia.dll 2012-09-30 06:59 - 2012-08-21 22:01 - 000245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\OxpsConverter.exe 2011-05-02 22:21 - 2011-05-02 22:21 - 000614400 _____ (Intel(R) Corporation) C:\WINDOWS\system32\PanIhvUi.dll 2012-04-24 20:00 - 2012-03-14 17:23 - 000065024 _____ (pdfforge GbR) C:\WINDOWS\system32\pdfcmon.dll 2015-02-17 20:14 - 2015-01-09 04:14 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\powertracker.dll 2012-06-13 23:02 - 2012-04-26 06:34 - 000009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdrmemptylst.exe 2011-05-02 21:48 - 2011-05-02 21:48 - 000019456 _____ (Windows (R) Codename Longhorn DDK provider) C:\WINDOWS\system32\S24NCfg.dll 2015-10-30 08:18 - 2015-10-30 08:18 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Flashlight.dll 2015-09-08 23:45 - 2015-07-22 17:48 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcResources.dll 2012-11-18 10:34 - 2012-07-26 03:36 - 000009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wdfres.dll 2016-07-16 12:42 - 2016-07-16 12:42 - 000076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDiscoveryPlugin.dll 2016-07-16 12:42 - 2016-07-16 12:42 - 000081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiOnboardingPlugin.dll 2011-05-02 22:19 - 2011-05-02 22:19 - 001216000 _____ (Intel(R) Corporation) C:\WINDOWS\system32\wlihvui.dll 2016-03-09 16:35 - 2016-02-12 19:18 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wu.upgrade.ps.dll 2011-12-04 22:33 - 1998-01-23 12:22 - 000304128 _____ (InstallShield Software Corporation) C:\WINDOWS\IsUninst.exe 2011-06-08 21:33 - 2011-06-08 21:33 - 000348160 _____ (Microsoft Corporation) C:\WINDOWS\msvcr71.dll 2011-06-08 21:33 - 2011-06-08 21:33 - 000434252 _____ (Microsoft Corporation) C:\WINDOWS\MSVCRTD.DLL 2015-10-30 08:19 - 2016-07-23 10:24 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\admwprox.dll 2015-10-30 08:19 - 2016-07-23 10:24 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ahadmin.dll 2013-05-12 12:01 - 2013-05-12 12:01 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-05-12 12:01 - 2013-05-12 12:01 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-05-12 12:01 - 2013-05-12 12:01 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-05-12 12:01 - 2013-05-12 12:01 - 000005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-05-12 12:01 - 2013-05-12 12:01 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-05-12 12:01 - 2013-05-12 12:01 - 000009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-05-12 12:01 - 2013-05-12 12:01 - 000005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-05-12 12:02 - 2013-05-12 12:02 - 000004096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2013-05-12 12:02 - 2013-05-12 12:02 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2010-06-10 14:46 - 1998-07-13 00:00 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CMDLGFR.DLL 2016-07-16 12:43 - 2016-07-16 12:43 - 000300032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\configmanager2.dll 2016-07-16 12:43 - 2016-07-16 12:43 - 000172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\coredpus.dll 2011-08-11 16:35 - 2010-12-23 04:09 - 000053248 _____ (Windows XP Bundled build C-Centric Single User) C:\WINDOWS\SysWOW64\CSVer.dll 2015-10-30 08:19 - 2015-10-30 08:19 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DafCdp.dll 2013-05-12 12:52 - 2012-04-08 23:40 - 000079360 _____ C:\WINDOWS\SysWOW64\ff_vfw.dll 2010-08-06 11:13 - 2010-08-06 11:13 - 000050688 _____ (Hewlett-Packard) C:\WINDOWS\SysWOW64\HPZidr12.dll 2010-08-06 11:13 - 2010-08-06 11:13 - 000034816 _____ (Hewlett-Packard) C:\WINDOWS\SysWOW64\HPZipr12.dll 2015-10-30 08:19 - 2016-07-23 10:24 - 000017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisreset.exe 2015-10-30 08:19 - 2016-07-23 10:24 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisrstap.dll 2015-10-30 08:19 - 2016-07-23 10:24 - 000168960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisRtl.dll 2010-06-10 14:46 - 2008-04-16 00:03 - 000180224 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\ijl11.dll 2017-03-15 21:05 - 2017-03-04 07:18 - 000198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\indexeddbserver.dll 2010-06-10 14:46 - 1998-07-12 23:00 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\INETFR.DLL 2016-07-16 12:44 - 2016-07-16 23:45 - 002549760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InkAnalysisLegacyCom.dll 2013-12-19 12:19 - 2013-12-19 12:19 - 000645120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsIntl.dll 2012-11-16 09:53 - 2012-11-16 09:53 - 000434176 _____ (The cURL library, hxxp://curl.haxx.se/) C:\WINDOWS\SysWOW64\libcurld.dll 2010-06-10 14:46 - 1998-07-13 01:00 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCIFR.DLL 2015-10-30 08:19 - 2015-10-30 08:19 - 000181760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqad.dll 2015-10-30 08:19 - 2016-07-23 10:24 - 000014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqcertui.dll 2015-10-30 08:19 - 2015-10-30 08:19 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqcmiplugin.dll 2015-10-30 08:19 - 2015-10-30 08:19 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqmigplugin.dll 2015-10-30 08:19 - 2016-07-23 10:24 - 000266240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.dll 2015-10-30 08:19 - 2016-07-23 10:23 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqrt.dll 2015-10-30 08:19 - 2015-10-30 08:19 - 000190464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqsec.dll 2015-10-30 08:19 - 2016-07-23 10:24 - 000635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqsnap.dll 2015-10-30 08:19 - 2016-07-23 10:23 - 000562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqutil.dll 2012-04-24 20:00 - 1998-07-13 01:08 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSCC2FR.DLL 2010-06-10 14:46 - 1998-07-13 00:00 - 000141312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSCMCFR.DLL 2016-07-13 22:50 - 2016-06-10 19:09 - 001155072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmlmedia.dll 2012-04-24 20:00 - 1998-07-06 00:00 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSMPIDE.DLL 2010-06-10 14:46 - 1998-07-12 23:00 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSMPIFR.DLL 2010-06-10 14:46 - 2001-08-24 13:00 - 001355776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvbvm50.dll 2009-05-21 19:21 - 2009-05-21 19:21 - 000499712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp71.dll 2002-01-05 09:37 - 2002-01-05 09:37 - 000344064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr70.dll 2009-05-21 17:57 - 2009-05-21 17:57 - 000348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr71.dll 2009-05-14 05:22 - 2009-05-14 05:22 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml4r.dll 2011-02-11 22:23 - 2011-02-11 22:23 - 000053299 _____ C:\WINDOWS\SysWOW64\pthreadVC.dll 2012-11-16 09:53 - 2012-11-16 09:53 - 000079360 _____ (GnuWin32 ) C:\WINDOWS\SysWOW64\regex2.dll 2010-06-10 14:46 - 2000-10-02 01:00 - 000119568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VB6FR.DLL 2010-06-10 14:46 - 2000-07-15 01:00 - 000101888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VB6STKIT.DLL 2010-06-10 14:46 - 2005-10-14 09:57 - 000237568 _____ (EnAppSys Ltd) C:\WINDOWS\SysWOW64\vbXML.dll 2010-06-10 14:46 - 2005-10-16 15:34 - 000151552 _____ (EnAppSys Ltd) C:\WINDOWS\SysWOW64\vbXMLRPC.dll 2015-10-30 08:19 - 2016-07-23 10:24 - 000011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wamregps.dll 2011-08-11 16:44 - 2010-12-21 02:08 - 000008192 _____ C:\WINDOWS\system32\Drivers\IntelMEFWVer.dll 2009-07-29 06:21 - 2009-07-23 02:04 - 000024576 _____ C:\ProgramData\SetWallpaper.exe 2019-01-16 20:58 - 2019-01-16 20:58 - 003301760 _____ C:\Users\Rom\ZHPCleaner.exe 2019-01-17 09:39 - 2019-01-17 09:39 - 003191680 _____ C:\Users\Rom\ZHPDiag3.exe 2021-04-19 17:09 - 2021-04-19 17:09 - 003468440 _____ (Nicolas Coolman) C:\Users\Rom\ZHPSuite.exe 2022-02-17 23:39 - 2022-02-17 23:40 - 002312192 _____ (Farbar) C:\Users\Rom\Desktop\FRST64.exe 2022-02-17 23:33 - 2022-02-17 23:33 - 003479704 _____ (Nicolas Coolman) C:\Users\Rom\Desktop\ZHPSuite.exe 2021-04-20 14:31 - 2021-04-20 14:31 - 002811112 _____ (kernel-panik) C:\Users\Rom\Downloads\kprm_2.9.exe 2012-02-12 14:25 - 2009-07-10 11:57 - 002195456 _____ (ZoneFiveSoftware) C:\Users\Rom\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SportTracks.exe ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== BCD ================================ Gestionnaire de d‚marrage Windows --------------------------------- identificateur {bootmgr} device partition=C: description Windows Boot Manager locale fr-FR inherit {globalsettings} default {current} resumeobject {0072d556-0b59-11eb-b8d3-80538e2740e7} displayorder {current} toolsdisplayorder {memdiag} timeout 30 Chargeur de d‚marrage Windows ----------------------------- identificateur {current} device partition=C: path \WINDOWS\system32\winload.exe description Windows 10 locale fr-FR inherit {bootloadersettings} recoverysequence {08c5c191-0b51-11eb-af96-c7e1bdac9d27} displaymessageoverride Recovery recoveryenabled Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \WINDOWS resumeobject {0072d556-0b59-11eb-b8d3-80538e2740e7} nx OptIn bootmenupolicy Standard Chargeur de d‚marrage Windows ----------------------------- identificateur {08c5c191-0b51-11eb-af96-c7e1bdac9d27} device ramdisk=[\Device\HarddiskVolume3]\Recovery\WindowsRE\Winre.wim,{08c5c192-0b51-11eb-af96-c7e1bdac9d27} path \windows\system32\winload.exe description Windows Recovery Environment locale fr-FR inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[\Device\HarddiskVolume3]\Recovery\WindowsRE\Winre.wim,{08c5c192-0b51-11eb-af96-c7e1bdac9d27} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Chargeur de d‚marrage Windows ----------------------------- identificateur {8cb2d9b4-7c05-11de-842e-b4611d44fefa} device ramdisk=[C:]\Recovery\8cb2d9b4-7c05-11de-842e-b4611d44fefa\Winre.wim,{8cb2d9b5-7c05-11de-842e-b4611d44fefa} path \windows\system32\winload.exe description Windows Recovery Environment inherit {bootloadersettings} osdevice ramdisk=[C:]\Recovery\8cb2d9b4-7c05-11de-842e-b4611d44fefa\Winre.wim,{8cb2d9b5-7c05-11de-842e-b4611d44fefa} systemroot \windows nx OptIn winpe Yes Chargeur de d‚marrage Windows ----------------------------- identificateur {d4e53ba9-7229-11e7-8565-ac52b3054ba4} device ramdisk=[unknown]\Recovery\WindowsRE\Winre.wim,{d4e53baa-7229-11e7-8565-ac52b3054ba4} path \windows\system32\winload.exe description Windows Recovery Environment locale fr-FR inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[unknown]\Recovery\WindowsRE\Winre.wim,{d4e53baa-7229-11e7-8565-ac52b3054ba4} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Reprendre … partir de la mise en veille prolong‚e ------------------------------------------------- identificateur {0072d556-0b59-11eb-b8d3-80538e2740e7} device partition=C: path \WINDOWS\system32\winresume.exe description Windows Resume Application locale fr-FR inherit {resumeloadersettings} recoverysequence {08c5c191-0b51-11eb-af96-c7e1bdac9d27} recoveryenabled Yes allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Reprendre … partir de la mise en veille prolong‚e ------------------------------------------------- identificateur {8cb2d9b0-7c05-11de-842e-b4611d44fefa} device boot path \Windows\system32\winresume.exe description Windows Resume Application locale fr-FR inherit {resumeloadersettings} filedevice partition=C: filepath \hiberfil.sys debugoptionenabled No Testeur de m‚moire Windows -------------------------- identificateur {memdiag} device partition=C: path \boot\memtest.exe description Diagnostics m‚moire Windows locale fr-FR inherit {globalsettings} badmemoryaccess Yes ParamŠtres EMS -------------- identificateur {emssettings} bootems No ParamŠtres du d‚bogueur ----------------------- identificateur {dbgsettings} debugtype Serial debugport 1 baudrate 115200 Erreurs de m‚moire RAM ---------------------- identificateur {badmemory} ParamŠtres globaux ------------------ identificateur {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} ParamŠtres du chargeur de d‚marrage ----------------------------------- identificateur {bootloadersettings} inherit {globalsettings} {hypervisorsettings} ParamŠtres de l'hyperviseur ------------------- identificateur {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 ParamŠtres du chargeur de reprise --------------------------------- identificateur {resumeloadersettings} inherit {globalsettings} Options de p‚riph‚rique ----------------------- identificateur {08c5c192-0b51-11eb-af96-c7e1bdac9d27} description Windows Recovery ramdisksdidevice partition=\Device\HarddiskVolume3 ramdisksdipath \Recovery\WindowsRE\boot.sdi Options de p‚riph‚rique ----------------------- identificateur {8cb2d9b5-7c05-11de-842e-b4611d44fefa} description Ramdisk Options ramdisksdidevice partition=C: ramdisksdipath \Recovery\8cb2d9b4-7c05-11de-842e-b4611d44fefa\boot.sdi ==================== Fin de FRST.txt ========================