Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 05-02-2022 Ran by julien (administrator) on PC-DE-JULIEN (Gigabyte Technology Co., Ltd. B450 AORUS ELITE) (12-02-2022 13:39:43) Running from C:\Users\julie\Desktop Loaded Profiles: julien Platform: Microsoft Windows 10 Pro Version 21H1 19043.1526 (X64) Language: French (France) -> English (United States) Default browser: Opera Boot Mode: Safe Mode (with Networking) ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\98.0.1108.50\identity_helper.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <7> (Microsoft Windows -> Microsoft Corporation) C:\Windows\HelpPane.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <4> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MsMpEng.exe ==================== Registry (Whitelisted) =================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\RtkAudUService64.exe [856288 2019-10-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-10] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3426560 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated) HKLM\...\Run: [PentabletService] => C:\Program Files\Pentablet\PentabletService.exe [2242328 2020-07-20] (Guangzhou Ugee Computers Technology Co.,Ltd -> Ugee Technology Company Ltd) HKLM\...\Run: [XMouseButtonControl] => C:\Program Files\Highresolution Enterprises\X-Mouse Button Control\XMouseButtonControl.exe [1684216 2020-05-13] (Open Source Developer, Phillip Gibbons -> Highresolution Enterprises) HKLM\...\Run: [Fences] => C:\Program Files (x86)\Stardock\Fences\Fences.exe [4031152 2013-11-26] (Stardock Corporation -> Stardock Corporation) HKLM\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe (No File) HKLM\...\Run: [WSVCUUpdateHelper.exe] => C:\Program Files\Wondershare\Wondershare UniConverter (Desktop)\WSVCUUpdateHelper.exe [33968 2021-04-25] (Wondershare Technology Co.,Ltd -> ) HKLM\...\Run: [Everything] => C:\Program Files\Everything\Everything.exe [2261600 2021-05-12] (voidtools -> voidtools) HKLM-x32\...\Run: [Discord] => C:\ProgramData\SquirrelMachineInstalls\Discord.exe [61370712 2020-07-18] (Discord Inc. -> Discord Inc.) HKLM-x32\...\Run: [TeamsMachineInstaller] => C:\Program Files (x86)\Teams Installer\Teams.exe [100580600 2020-08-04] (Microsoft Corporation -> Microsoft Corporation) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2410968 2018-09-13] (Adobe Systems Incorporated -> Adobe Inc.) HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2133216 2017-03-23] (Wondershare Technology Co.,Ltd -> Wondershare) HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-08-02] (Adobe Inc. -> ) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [10585376 2022-02-02] (Dropbox, Inc -> Dropbox, Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [706344 2021-09-27] (Oracle America, Inc. -> Oracle Corporation) HKLM-x32\...\RunOnce: [SelLed] => C:\Program Files (x86)\GIGABYTE\RGBFusion\RunLed.exe [50096 2019-04-29] (GIGA-BYTE TECHNOLOGY CO., LTD. -> ) HKU\S-1-5-21-2518514021-3698140979-559189132-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [33435616 2021-10-09] (Epic Games Inc. -> Epic Games, Inc.) HKU\S-1-5-21-2518514021-3698140979-559189132-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [35320448 2022-01-25] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-2518514021-3698140979-559189132-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\julie\AppData\Local\Microsoft\Teams\Update.exe [2452112 2020-10-01] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKU\S-1-5-21-2518514021-3698140979-559189132-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\lghub.exe [136443968 2022-01-12] (Logitech Inc -> Logitech, Inc.) HKU\S-1-5-21-2518514021-3698140979-559189132-1001\...\Run: [Opera GX Browser Assistant] => C:\Users\julie\AppData\Local\Programs\Opera GX\assistant\browser_assistant.exe [3291288 2021-02-01] (Opera Software AS -> Opera Software) HKU\S-1-5-21-2518514021-3698140979-559189132-1001\...\Run: [Discord] => C:\Users\julie\AppData\Local\Discord\Update.exe [1512608 2021-09-21] (Discord Inc. -> GitHub) HKU\S-1-5-21-2518514021-3698140979-559189132-1001\...\Run: [AdobeBridge] => [X] HKU\S-1-5-21-2518514021-3698140979-559189132-1001\...\RunOnce: [Application Restart #0] => C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe [26576888 2022-01-25] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) HKU\S-1-5-21-2518514021-3698140979-559189132-1001\...\RunOnce: [Application Restart #1] => C:\Windows\System32\notepad.exe [208384 2021-11-13] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-21-2518514021-3698140979-559189132-1001\...\RunOnce: [Application Restart #2] => C:\Windows\System32\notepad.exe [208384 2021-11-13] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-21-2518514021-3698140979-559189132-1001\...\RunOnce: [Application Restart #3] => C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe [2630712 2020-06-20] (Adobe Inc. -> Adobe Inc.) HKU\S-1-5-21-2518514021-3698140979-559189132-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\WPXSCR~1.SCR [255136 2021-07-04] (Skutta, Kristjan -> ) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\98.0.4758.82\Installer\chrmstp.exe [2022-02-09] (Google LLC -> Google LLC) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Image Transfer Utility 2.lnk [2020-11-09] ShortcutTarget: Image Transfer Utility 2.lnk -> C:\Program Files (x86)\Canon\ImageTransferUtility2\Image Transfer Utility 2.exe (Canon Inc. -> CANON INC.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SOLIDWORKS 2020 Démarrage rapide.lnk [2020-09-25] ShortcutTarget: SOLIDWORKS 2020 Démarrage rapide.lnk -> C:\Windows\Installer\{3F4681F3-B30B-4531-ADB2-3661B531F926}\NewShortcut2_87EDF6C81D0A4B7B84F42FE0C6A9D608.exe (Flexera) [File not signed] Startup: C:\Users\julie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\EOS Utility.lnk [2020-11-09] ShortcutTarget: EOS Utility.lnk -> C:\Program Files (x86)\Canon\EOS Utility\EOS Utility.exe (Canon Inc. -> Canon INC.) Startup: C:\Users\julie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Fences.lnk [2021-02-13] ShortcutTarget: Fences.lnk -> C:\Program Files (x86)\Stardock\Fences\Fences.exe (Stardock Corporation -> Stardock Corporation) Startup: C:\Users\julie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Navigateur Opera GX.lnk [2021-05-27] ShortcutTarget: Navigateur Opera GX.lnk -> C:\Users\julie\AppData\Local\Programs\Opera GX\launcher.exe (Opera Software AS -> Opera Software) Startup: C:\Users\julie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Notion (2).lnk [2021-11-18] ShortcutTarget: Notion (2).lnk -> C:\Users\julie\AppData\Local\Programs\Notion\Notion.exe (Notion Labs, Inc. -> Notion Labs, Incorporated) Startup: C:\Users\julie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Voicemeeter (VB-Audio).LNK [2021-05-21] ShortcutTarget: Voicemeeter (VB-Audio).LNK -> C:\Program Files (x86)\VB\Voicemeeter\voicemeeter8x64.exe (Vincent Burel -> VB-AUDIO Software) GroupPolicy: Restriction ? <==== ATTENTION Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION ==================== Scheduled Tasks (Whitelisted) ============ (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {0018A810-3B6D-4EFE-A04E-E6375E1D1784} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-01-25] (Piriform Software Ltd -> Piriform) Task: {05EF588B-0DCC-454D-AD74-8C7216827D7C} - System32\Tasks\WpsExternal_julien_20220121220920 => C:\Users\julie\AppData\Local\Kingsoft\WPS Office\11.2.0.10463\office6\wpscloudsvr.exe [1060552 2022-01-21] (Zhuhai Kingsoft Office Software Co., Ltd. -> Zhuhai Kingsoft Office Software Co.,Ltd) Task: {16B12405-4E82-4D55-B3C5-A0A3C4124E33} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MpCmdRun.exe [925848 2022-02-10] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {1E9F580C-6DC3-497B-B81C-74819C38F674} - System32\Tasks\AMDAutoUpdate => C:\Program Files\AMD\AutoUpdate\AMDAutoUpdate.exe [677624 2019-11-21] (Advanced Micro Devices INC. -> ) Task: {202A7F78-826F-4C00-87B1-EACEF36A5A00} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [260600 2022-01-25] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) Task: {20873A87-9D84-49A1-A404-BF7F334D49E1} - System32\Tasks\Opera GX scheduled Autoupdate 1612108524 => C:\Users\julie\AppData\Local\Programs\Opera GX\launcher.exe [2270416 2022-02-01] (Opera Software AS -> Opera Software) Task: {22A905B8-143E-4806-ABC7-73CB971FB31C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MpCmdRun.exe [925848 2022-02-10] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {27E66A76-318A-4A7D-BE9D-0FCFF7CCAE16} - System32\Tasks\StartCNBM => C:\Program Files\AMD\CNext\CNext\cncmd.exe [55288 2022-01-25] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) Task: {2D8E3735-D584-458F-8801-045FC37697D3} - System32\Tasks\BlueStacksHelper_nxt => C:\Program Files\BlueStacks_nxt\BlueStacksHelper.exe [275136 2022-01-31] (Bluestack Systems, Inc -> BlueStack Systems, Inc.) Task: {3030E292-E153-4C71-8DA6-E18BF4207F16} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [55288 2022-01-25] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) Task: {36EFBCCA-8E7F-44A0-A46A-FB578229377B} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-2518514021-3698140979-559189132-1001 => C:\Users\julie\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe /reporting (No File) Task: {3CC8AD62-B3A2-4BC1-97E1-965949A25933} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22880112 2022-02-02] (Microsoft Corporation -> Microsoft Corporation) Task: {3E73B85B-0A1A-4602-9BDB-718F3783502D} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [8573352 2022-02-02] (Microsoft Corporation -> Microsoft Corporation) Task: {45C297E1-AB34-4690-8C3C-051C76F9C1CC} - System32\Tasks\Tweaking.com - Windows Repair Tray Icon => C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe [220816 2019-09-30] (Tweaking LLC -> Tweaking.com) Task: {4DA46556-416C-4D90-88C3-92579C670F73} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [8573352 2022-02-02] (Microsoft Corporation -> Microsoft Corporation) Task: {57CCC60B-08A2-4F6B-80FF-83C946C1E5EA} - System32\Tasks\PowerToys\Autorun for julien => C:\Program Files\PowerToys\PowerToys.exe [1227152 2021-09-28] (Microsoft Corporation -> Microsoft Corporation) Task: {62810E7F-51D5-4FD4-BD61-2A07A5F81D5D} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe /from_scheduler:1 (No File) Task: {66B127D5-A319-4F2D-891D-1C2243B4E9B2} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-07-18] (Google LLC -> Google LLC) Task: {6865A7E6-B5A3-47A5-893A-5E4B4C5E5A5F} - System32\Tasks\Opera GX scheduled assistant Autoupdate 1617007790 => C:\Users\julie\AppData\Local\Programs\Opera GX\launcher.exe [2270416 2022-02-01] (Opera Software AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\julie\AppData\Local\Programs\Opera GX\assistant" $(Arg0) Task: {71CBB4D8-683E-4210-9393-85CBCA730AF2} - System32\Tasks\CCleanerSkipUAC - julien => C:\Program Files\CCleaner\CCleaner.exe [29453952 2022-01-25] (Piriform Software Ltd -> Piriform Software Ltd) Task: {74FB2AA9-5CC3-471A-A7D7-B7285A2505A9} - System32\Tasks\AMDInstallLauncher => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1709048 2022-01-26] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) Task: {7C146A19-6FE2-4B62-A175-B72E96783982} - System32\Tasks\AMDRyzenMasterSDKTask => C:\Program Files\AMD\CNext\CNext\cpumetricsserver.exe [358912 2022-01-25] (Advanced Micro Devices, Inc.) [File not signed] Task: {87163C2B-DB3E-41B4-AAA2-9E94E51C9452} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-07-18] (Google LLC -> Google LLC) Task: {95673DD1-7BB8-4322-86F5-DAD49399B153} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\Windows\explorer.exe /NoUACCheck Task: {A0FF5A53-FF57-44A9-947C-C6A4EC5E11F8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MpCmdRun.exe [925848 2022-02-10] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {B4F41A90-6A60-434E-A14E-EA5C3DAF66A0} - System32\Tasks\StartAUEP => C:\Program Files\AMD\Performance Profile Client\AUEPMaster.exe [652792 2022-01-25] (Advanced Micro Devices Inc. -> AMD) Task: {B9A3A15E-CF93-4EF5-A4D6-377A3943AADA} - System32\Tasks\WpsUpdateTask_julien => C:\Users\julie\AppData\Local\Kingsoft\WPS Office\11.2.0.10463\office6\wpsupdate.exe [168648 2022-01-21] (Zhuhai Kingsoft Office Software Co., Ltd. -> Zhuhai Kingsoft Office Software Co.,Ltd) Task: {C8D81F54-5806-41B9-8D4A-64F73230E444} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3426560 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {CC3A17F0-10C7-4D7A-AA1E-4A48F823B9F5} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [138584 2022-02-02] (Microsoft Corporation -> Microsoft Corporation) Task: {CF7A8299-8810-4A98-A441-6421FC471638} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-13] (Dropbox, Inc -> Dropbox, Inc.) Task: {D42B5BE2-626C-42AB-BBAE-FF2834499502} - System32\Tasks\MATLAB R2021a Startup Accelerator => C:\Program Files\MATLAB\R2021a\bin\win64\MATLABStartupAccelerator.exe [51200 2020-11-15] () [File not signed] Task: {D4DDD63D-BFA6-4EA0-B5D3-D7D9385FB90D} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2518514021-3698140979-559189132-1001 => C:\Users\julie\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe (No File) Task: {DF6D5679-8299-4FCE-830F-175033A4E4BF} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe (No File) Task: {E7DAE8AF-A5E9-4C64-8429-0AA44E5C0C12} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22880112 2022-02-02] (Microsoft Corporation -> Microsoft Corporation) Task: {EB931528-05F6-408C-9023-1A557D1649C9} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [138584 2022-02-02] (Microsoft Corporation -> Microsoft Corporation) Task: {F13EDA2A-DF23-4F58-B47A-17EBCE321A7F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MpCmdRun.exe [925848 2022-02-10] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {F343B58B-EAC5-4F4A-ABAA-BC38EB0FA9B5} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1617384 2022-02-02] (Microsoft Corporation -> Microsoft Corporation) Task: {F5D2CF4B-D2C9-45FA-A059-C68AA8E90C43} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-13] (Dropbox, Inc -> Dropbox, Inc.) Task: {F73AD273-6379-4B6A-B74E-E1038D8FC56D} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1709048 2022-01-26] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) Task: {F7910164-1331-455A-908B-A5AD35CF8957} - System32\Tasks\V30-Marquee-TaskPlan => C:\Program Files\KLIM AIM Gaming Mouse\KLIM AIM Gaming Mouse.exe [958976 2017-04-12] (Klim & Co limited) [File not signed] (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe Task: C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\MATLAB R2021a Startup Accelerator.job => C:\Program Files\MATLAB\R2021a\bin\win64\MATLABStartupAccelerator.exe ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Tcpip\Parameters: [DhcpNameServer] 212.27.40.240 212.27.40.241 Tcpip\..\Interfaces\{c411ec75-1fb0-4f16-9b55-1af94e57c5d5}: [DhcpNameServer] 212.27.40.240 212.27.40.241 Edge: ======= Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found] Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found] Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found] Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found] Edge DefaultProfile: Default Edge Profile: C:\Users\julie\AppData\Local\Microsoft\Edge\User Data\Default [2022-02-12] FireFox: ======== FF Plugin: 3ds.com/ComposerPlayerWebPlugin_x86_64 -> C:\PROGRA~1\SOLIDW~1\SOLIDW~2\Bin\NPCOMP~1.DLL [2020-05-08] (DASSAULT SYSTEMES SE -> Dassault Systemes) FF Plugin: @java.com/DTPlugin,version=11.311.2 -> C:\Program Files\Java\jre1.8.0_311\bin\dtplugin\npDeployJava1.dll [2021-10-26] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.311.2 -> C:\Program Files\Java\jre1.8.0_311\bin\plugin2\npjp2.dll [2021-10-26] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-02-02] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2018-09-13] (Adobe Systems Incorporated -> Adobe Systems) FF Plugin-x32: 3ds.com/ComposerPlayerWebPlugin -> C:\PROGRA~1\SOLIDW~1\SOLIDW~2\Bin\x86\NPCOMP~1.DLL [2020-05-08] (DASSAULT SYSTEMES SE -> Dassault Systemes) FF Plugin-x32: @java.com/DTPlugin,version=11.311.2 -> C:\Program Files (x86)\Java\jre1.8.0_311\bin\dtplugin\npDeployJava1.dll [2021-10-26] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.311.2 -> C:\Program Files (x86)\Java\jre1.8.0_311\bin\plugin2\npjp2.dll [2021-10-26] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2021-10-30] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2021-10-30] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @videolan.org/vlc,version=3.0.16 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2018-09-13] (Adobe Systems Incorporated -> Adobe Systems) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\julie\AppData\Local\Google\Chrome\User Data\Default [2022-02-11] CHR DownloadDir: B:\téléchargements CHR Notifications: Default -> hxxps://aternos.org; hxxps://calendar.google.com; hxxps://meet.google.com; hxxps://www.ldlc.com; hxxps://www.pinterest.fr; hxxps://www.youtube.com CHR DefaultSearchURL: Default -> hxxps://www.bizzbee.com/on/demandware.static/Sites-Bizzbee-SFRA-Site/-/default/dw3ad6f0af/images/pwa/pwa512.png CHR Extension: (Google Traduction) - C:\Users\julie\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2022-02-07] CHR Extension: (Slides) - C:\Users\julie\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-07-18] CHR Extension: (Docs) - C:\Users\julie\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-07-18] CHR Extension: (Google Drive) - C:\Users\julie\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-24] CHR Extension: (ColorZilla) - C:\Users\julie\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhlhnicpbhignbdhedgjhgdocnmhomnp [2020-07-22] CHR Extension: (YouTube) - C:\Users\julie\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-07-18] CHR Extension: (Social Blade) - C:\Users\julie\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfidkbgamfhdgmedldkagjopnbobdmdn [2021-06-05] [UpdateUrl:hxxps://addon.socialblade.com/updates.json] <==== ATTENTION CHR Extension: (Picture-in-Picture for Chrome) - C:\Users\julie\AppData\Local\Google\Chrome\User Data\Default\Extensions\ekoomohieogfomodjdjjfdammloodeih [2021-08-21] CHR Extension: (wanteeed) - C:\Users\julie\AppData\Local\Google\Chrome\User Data\Default\Extensions\emnoomldgleagdjapdeckpmebokijail [2022-02-07] CHR Extension: (Sheets) - C:\Users\julie\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-07-18] CHR Extension: (Raccourci texte) - C:\Users\julie\AppData\Local\Google\Chrome\User Data\Default\Extensions\fhdkefmdjomhpambfphbiolnnmoaijoa [2021-01-19] CHR Extension: (Google Docs hors connexion) - C:\Users\julie\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-01-25] CHR Extension: (Double sous-titres YouTube™) - C:\Users\julie\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkbdddpiemdeibjoknnofflfgbgnebcm [2022-02-07] CHR Extension: (Picture-in-Picture Extension (by Google)) - C:\Users\julie\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkgfoiooedgoejojocmhlaklaeopbecg [2020-11-18] CHR Extension: (Vérificateur de messages Google) - C:\Users\julie\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2020-07-22] CHR Extension: (Bizzbee) - C:\Users\julie\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkppjppalippapocncnibblfekpccheh [2020-12-01] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\julie\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29] CHR Extension: (ImTranslator: Traducteur, Dictionnaire, Voix) - C:\Users\julie\AppData\Local\Google\Chrome\User Data\Default\Extensions\noaijdpnepcgjemiklgfkcfbkokogabh [2022-02-07] CHR Extension: (Speedtest by Ookla) - C:\Users\julie\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgjjikdiikihdfpoppgaidccahalehjh [2021-04-15] CHR Extension: (Gmail) - C:\Users\julie\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-23] CHR Profile: C:\Users\julie\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-01-27] Opera: ======= StartMenuInternet: (HKU\S-1-5-21-2518514021-3698140979-559189132-1001) Opera GXStable - "C:\Users\julie\AppData\Local\Programs\Opera GX\Launcher.exe" ==================== Services (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [844856 2020-06-20] (Adobe Inc. -> Adobe Inc.) S2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3849472 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated) S2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3617024 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated) S2 AUEPLauncher; C:\Program Files\AMD\CIM\..\Performance Profile Client\AUEPDU.exe [504824 2022-01-25] (Advanced Micro Devices Inc. -> AMD) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8901968 2021-02-24] (BattlEye Innovations e.K. -> ) S2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12124536 2022-02-02] (Microsoft Corporation -> Microsoft Corporation) S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-13] (Dropbox, Inc -> Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-13] (Dropbox, Inc -> Dropbox, Inc.) S2 DbxSvc; C:\Windows\system32\DbxSvc.exe [44328 2022-02-02] (Dropbox, Inc -> Dropbox, Inc.) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [811120 2020-07-20] (EasyAntiCheat Oy -> Epic Games, Inc) S2 Everything; C:\Program Files\Everything\Everything.exe [2261600 2021-05-12] (voidtools -> voidtools) S2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [11174464 2022-01-12] (Logitech Inc -> Logitech, Inc.) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7972536 2022-01-27] (Malwarebytes Inc -> Malwarebytes) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6136536 2022-02-09] (Microsoft Windows Publisher -> Microsoft Corporation) S3 SolidWorks Licensing Service; C:\Program Files (x86)\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe [79360 2020-09-25] (SolidWorks) [File not signed] S2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12986664 2021-12-17] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) S2 Wallpaper Engine Service; C:\Program Files (x86)\Steam\steamapps\common\wallpaper_engine\bin\wallpaperservice32_c.exe [520296 2021-02-21] (Skutta, Kristjan -> ) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\NisSrv.exe [2909208 2022-02-10] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MsMpEng.exe [128376 2022-02-10] (Microsoft Windows Publisher -> Microsoft Corporation) S3 wpscloudsvr; C:\Program Files (x86)\Kingsoft\office6\wpscloudsvr.exe [1058504 2021-08-22] (Zhuhai Kingsoft Office Software Co., Ltd. -> Zhuhai Kingsoft Office Software Co.,Ltd) ===================== Drivers (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R3 amdfendrmgr; C:\Windows\System32\drivers\amdfendrmgr.sys [33216 2021-12-02] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) S2 AMDRyzenMasterDriverV19; C:\Windows\system32\AMDRyzenMasterDriver.sys [43336 2022-01-25] (Advanced Micro Devices INC. -> Advanced Micro Devices) R3 AMDSAFD; C:\Windows\System32\DriverStore\FileRepository\amdsafd.inf_amd64_edd3335a4253bf6d\amdsafd.sys [109520 2021-11-05] (Advanced Micro Devices Inc. -> Advanced Micro Devices) R3 AmdTools64; C:\Windows\System32\drivers\AmdTools64.sys [63392 2020-06-16] (Microsoft Windows Hardware Compatibility Publisher -> ) S3 amdwddmg; C:\Windows\System32\DriverStore\FileRepository\u0376255.inf_amd64_b67dbc7531b4ea7c\B376137\amdkmdag.sys [82940976 2022-02-02] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) R3 AMDXE; C:\Windows\System32\drivers\amdxe.sys [65168 2021-08-17] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) S2 BlueStacksDrv_nxt; C:\Program Files\BlueStacks_nxt\BstkDrv_nxt.sys [320728 2022-01-31] (Bluestack Systems, Inc -> Bluestack System Inc.) R3 CMUAC; C:\Windows\System32\drivers\CMUAC.sys [613888 2014-10-09] (C-MEDIA ELECTRONICS INC. -> C-MEDIA) S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus2.sys [159864 2021-06-29] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S1 EneTechIo; C:\Windows\system32\drivers\ene.sys [20992 2020-05-12] (Microsoft Windows Hardware Compatibility Publisher -> ) S3 gdrv2; C:\Windows\gdrv2.sys [32600 2020-07-19] (GIGA-BYTE Technology Co., Ltd. -> GIGA-BYTE TECHNOLOGY CO., LTD.) S3 HWiNFO_150; C:\Users\julie\AppData\Local\Temp\HWiNFO64A_150.SYS [62240 2022-01-15] (Martin Malik - REALiX -> REALiX(tm)) <==== ATTENTION R3 logi_joy_bus_enum; C:\Windows\system32\drivers\logi_joy_bus_enum.sys [37200 2021-03-20] (Logitech Inc -> Logitech) S3 logi_joy_vir_hid; C:\Windows\system32\drivers\logi_joy_vir_hid.sys [25928 2021-03-20] (Logitech Inc -> Logitech) R3 logi_joy_xlcore; C:\Windows\system32\drivers\logi_joy_xlcore.sys [66896 2021-03-20] (Logitech Inc -> Logitech) S2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [220568 2022-02-12] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [19912 2022-01-27] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [248992 2022-02-12] (Malwarebytes Inc -> Malwarebytes) S2 SSGDIO; C:\Windows\SysWOW64\DRIVERS\ssgdio64.sys [14608 2020-07-20] (ATI Technologies, Inc -> ATI Technologies Inc.) S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [167280 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 VBAudio100VMVAIO3MME; C:\Windows\System32\drivers\vbaudio_vmvaio364_win10.sys [71712 2021-05-21] (Vincent Burel -> Windows (R) Win 7 DDK provider) S3 VBAudioVACMME; C:\Windows\System32\drivers\vbaudio_cable64_win7.sys [41192 2014-09-02] (Vincent Burel -> Windows (R) Win 7 DDK provider) S3 VBAudioVMAUXVAIOMME; C:\Windows\System32\drivers\vbaudio_vmauxvaio64_win10.sys [71920 2021-05-21] (Vincent Burel -> Windows (R) Win 7 DDK provider) R3 VBAudioVMVAIOMME; C:\Windows\System32\drivers\vbaudio_vmvaio64_win10.sys [71712 2021-05-21] (Vincent Burel -> Windows (R) Win 7 DDK provider) S3 ViGEmBus; C:\Windows\System32\drivers\ViGEmBus.sys [69168 2020-01-10] (Microsoft Windows Hardware Compatibility Publisher -> Benjamin Höglinger-Stelzer) R3 vmulti; C:\Windows\System32\drivers\vmulti.sys [10752 2018-12-11] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) R3 VOICEMOD_Driver; C:\Windows\system32\drivers\vmdrv.sys [48136 2021-01-18] (Voicemod Sociedad Limitada -> Windows (R) Win 7 DDK provider) S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [48536 2022-02-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [438520 2022-02-10] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [90360 2022-02-10] (Microsoft Windows -> Microsoft Corporation) S2 AMDRyzenMasterDriverV17; \??\C:\Program Files\AMD\CNext\CNext\AMDRyzenMasterDriver.sys [X] U1 aswbdisk; no ImagePath ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One month (created) (Whitelisted) ========= (If an entry is included in the fixlist, the file/folder will be moved.) 2022-02-12 13:38 - 2022-02-12 13:38 - 000337198 _____ C:\Windows\ntbtlog.txt 2022-02-12 13:34 - 2022-02-12 13:34 - 000000000 _____ C:\Users\julie\Desktop\Addition.txt 2022-02-12 13:32 - 2022-02-12 13:40 - 000034145 _____ C:\Users\julie\Desktop\FRST.txt 2022-02-11 19:01 - 2022-02-11 19:00 - 000533493 _____ C:\Users\julie\Desktop\ZHPDiag (2).txt 2022-02-11 19:00 - 2022-02-11 19:00 - 000533493 _____ C:\Users\julie\Desktop\ZHPDiag.html 2022-02-11 18:53 - 2022-02-11 18:53 - 000000865 _____ C:\Users\julie\Desktop\ZHPSuite.lnk 2022-02-11 18:49 - 2022-02-12 13:38 - 000220568 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys 2022-02-11 18:49 - 2022-02-12 13:38 - 000000214 _____ C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job 2022-02-11 18:42 - 2022-02-11 18:42 - 012574144 _____ (AVAST Software) C:\Users\julie\Desktop\avastclear.exe 2022-02-11 11:04 - 2022-02-12 13:40 - 000000000 ____D C:\FRST 2022-02-11 10:59 - 2022-02-11 10:59 - 002311680 _____ (Farbar) C:\Users\julie\Desktop\FRST64.exe 2022-02-10 20:34 - 2022-02-10 20:43 - 000000000 ____D C:\Users\julie\Desktop\hack 2022-02-10 20:12 - 2022-02-10 20:12 - 000003588 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2518514021-3698140979-559189132-1001 2022-02-10 20:12 - 2022-02-10 20:12 - 000003374 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2518514021-3698140979-559189132-1001 2022-02-10 19:18 - 2022-02-10 19:18 - 000000875 _____ C:\Users\julie\Desktop\ZHPCleaner.lnk 2022-02-10 19:17 - 2022-02-10 19:17 - 003293336 _____ (Nicolas Coolman) C:\Users\julie\Desktop\ZHPCleaner.exe 2022-02-10 19:12 - 2022-02-10 20:07 - 000000000 ____D C:\AdwCleaner 2022-02-10 19:12 - 2022-02-10 19:12 - 008540344 _____ (Malwarebytes) C:\Users\julie\Desktop\adwcleaner_8.3.1.exe 2022-02-10 18:06 - 2022-02-10 18:06 - 000000710 _____ C:\Users\julie\Desktop\ZHPFix.txt 2022-02-10 17:50 - 2022-02-11 19:00 - 000432504 _____ C:\Users\julie\Desktop\ZHPDiag.txt 2022-02-10 17:39 - 2022-02-11 19:00 - 000000000 ____D C:\Users\julie\AppData\Roaming\ZHP 2022-02-10 17:39 - 2022-02-10 19:18 - 000000000 ____D C:\Users\julie\AppData\Local\ZHP 2022-02-10 17:38 - 2022-02-10 17:38 - 003479704 _____ (Nicolas Coolman) C:\Users\julie\Desktop\ZHPSuite.exe 2022-02-10 16:27 - 2022-02-10 16:27 - 000002902 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC - julien 2022-02-10 16:27 - 2022-02-10 16:27 - 000000863 _____ C:\Users\Public\Desktop\CCleaner.lnk 2022-02-10 14:57 - 2022-02-11 18:47 - 000061304 _____ () C:\Windows\system32\Drivers\lpsport.sys 2022-02-10 14:57 - 2022-02-11 18:47 - 000003990 _____ C:\Windows\system32\Tasks\Avast Emergency Update 2022-02-10 14:57 - 2022-02-10 14:57 - 000000000 ____D C:\Windows\system32\Tasks\Avast Software 2022-02-10 14:55 - 2022-02-11 18:49 - 000000000 ____D C:\ProgramData\Avast Software 2022-02-10 14:55 - 2022-02-10 14:55 - 000259872 _____ (AVAST Software) C:\Users\julie\Desktop\avast_free_antivirus_setup_online.exe 2022-02-10 14:01 - 2022-02-10 14:01 - 000022433 _____ C:\Users\julie\Desktop\travail_emc.odt 2022-02-10 11:56 - 2022-02-10 11:56 - 000003304 _____ C:\Windows\system32\Tasks\StartCNBM 2022-02-10 11:56 - 2022-02-10 11:56 - 000003196 _____ C:\Windows\system32\Tasks\StartAUEP 2022-02-10 11:54 - 2022-02-10 11:54 - 000003160 _____ C:\Windows\system32\Tasks\StartCN 2022-02-10 11:54 - 2022-02-10 11:54 - 000003114 _____ C:\Windows\system32\Tasks\AMDInstallLauncher 2022-02-10 11:54 - 2022-02-10 11:54 - 000003102 _____ C:\Windows\system32\Tasks\AMDLinkUpdate 2022-02-10 11:54 - 2022-02-10 11:54 - 000003080 _____ C:\Windows\system32\Tasks\StartDVR 2022-02-10 11:54 - 2022-02-10 11:54 - 000002620 _____ C:\Windows\system32\Tasks\AMDRyzenMasterSDKTask 2022-02-10 11:54 - 2022-02-10 11:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Radeon Software 2022-02-10 11:54 - 2022-02-10 11:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Link For Windows 2022-02-10 11:54 - 2022-02-10 11:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Bug Report Tool 2022-02-10 11:51 - 2022-02-02 18:07 - 001904728 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe 2022-02-10 11:51 - 2022-02-02 18:07 - 001904728 _____ C:\Windows\system32\vulkaninfo.exe 2022-02-10 11:51 - 2022-02-02 18:07 - 001475672 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2022-02-10 11:51 - 2022-02-02 18:07 - 001475672 _____ C:\Windows\SysWOW64\vulkaninfo.exe 2022-02-10 11:51 - 2022-02-02 18:07 - 001437304 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll 2022-02-10 11:51 - 2022-02-02 18:07 - 001437304 _____ C:\Windows\system32\vulkan-1.dll 2022-02-10 11:51 - 2022-02-02 18:07 - 001148880 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll 2022-02-10 11:51 - 2022-02-02 18:07 - 001148880 _____ C:\Windows\SysWOW64\vulkan-1.dll 2022-02-10 11:51 - 2022-02-02 18:07 - 000789568 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Rapidfire64.dll 2022-02-10 11:51 - 2022-02-02 18:07 - 000666688 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\Rapidfire.dll 2022-02-10 11:51 - 2022-02-02 18:07 - 000550464 _____ C:\Windows\system32\GameManager64.dll 2022-02-10 11:51 - 2022-02-02 18:07 - 000493120 _____ C:\Windows\system32\dgtrayicon.exe 2022-02-10 11:51 - 2022-02-02 18:07 - 000484928 _____ C:\Windows\system32\EEURestart.exe 2022-02-10 11:51 - 2022-02-02 18:07 - 000411712 _____ C:\Windows\SysWOW64\GameManager32.dll 2022-02-10 11:51 - 2022-02-02 18:07 - 000336960 _____ C:\Windows\system32\clinfo.exe 2022-02-10 11:51 - 2022-02-02 18:07 - 000186944 _____ C:\Windows\system32\mantle64.dll 2022-02-10 11:51 - 2022-02-02 18:07 - 000170048 _____ C:\Windows\system32\mantleaxl64.dll 2022-02-10 11:51 - 2022-02-02 18:07 - 000148032 _____ C:\Windows\SysWOW64\mantle32.dll 2022-02-10 11:51 - 2022-02-02 18:07 - 000133696 _____ C:\Windows\SysWOW64\mantleaxl32.dll 2022-02-10 11:51 - 2022-02-02 18:07 - 000083520 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mcl64.dll 2022-02-10 11:51 - 2022-02-02 18:07 - 000068160 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mcl32.dll 2022-02-10 11:51 - 2022-02-02 18:07 - 000039488 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\RapidFireServer64.dll 2022-02-10 11:51 - 2022-02-02 18:07 - 000036416 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\RapidFireServer.dll 2022-02-10 11:51 - 2022-02-02 18:07 - 000020968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\detoured.dll 2022-02-10 11:51 - 2022-02-02 18:07 - 000020968 _____ (Microsoft Corporation) C:\Windows\system32\detoured.dll 2022-02-10 11:51 - 2022-02-02 18:06 - 001396824 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll 2022-02-10 11:51 - 2022-02-02 18:06 - 000848984 _____ (AMD) C:\Windows\system32\atieclxx.exe 2022-02-10 11:51 - 2022-02-02 18:06 - 000517168 _____ C:\Windows\system32\atieah64.exe 2022-02-10 11:51 - 2022-02-02 18:06 - 000461400 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll 2022-02-10 11:51 - 2022-02-02 18:06 - 000385072 _____ C:\Windows\SysWOW64\atieah32.exe 2022-02-10 11:51 - 2022-02-02 18:06 - 000253528 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll 2022-02-10 11:51 - 2022-02-02 18:06 - 000212568 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll 2022-02-10 11:51 - 2022-02-02 18:06 - 000193440 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll 2022-02-10 11:51 - 2022-02-02 18:06 - 000171072 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atisamu64.dll 2022-02-10 11:51 - 2022-02-02 18:06 - 000159320 _____ (AMD) C:\Windows\system32\atimuixx.dll 2022-02-10 11:51 - 2022-02-02 18:06 - 000157872 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll 2022-02-10 11:51 - 2022-02-02 18:06 - 000133696 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atisamu32.dll 2022-02-10 11:51 - 2022-02-02 18:06 - 000132184 _____ C:\Windows\system32\atidxx64.dll 2022-02-10 11:51 - 2022-02-02 18:06 - 000105008 _____ C:\Windows\SysWOW64\atidxx32.dll 2022-02-10 11:51 - 2022-02-02 18:06 - 000062000 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ati2erec.dll 2022-02-10 11:51 - 2022-02-02 18:05 - 001689392 _____ (AMD) C:\Windows\system32\amf-mft-mjpeg-decoder64.dll 2022-02-10 11:51 - 2022-02-02 18:05 - 001368240 _____ (AMD) C:\Windows\SysWOW64\amf-mft-mjpeg-decoder32.dll 2022-02-10 11:51 - 2022-02-02 18:05 - 000140224 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll 2022-02-10 11:51 - 2022-02-02 18:05 - 000124976 _____ C:\Windows\system32\amdxc64.dll 2022-02-10 11:51 - 2022-02-02 18:05 - 000111584 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll 2022-02-10 11:51 - 2022-02-02 18:05 - 000100952 _____ C:\Windows\SysWOW64\amdxc32.dll 2022-02-10 11:51 - 2022-01-26 03:20 - 003471376 _____ C:\Windows\SysWOW64\atiumdva.cap 2022-02-10 11:51 - 2022-01-26 03:20 - 003437632 _____ C:\Windows\system32\atiumd6a.cap 2022-02-10 11:51 - 2022-01-26 03:14 - 000569200 _____ C:\Windows\SysWOW64\atiapfxx.blb 2022-02-10 11:51 - 2022-01-26 03:14 - 000569200 _____ C:\Windows\system32\atiapfxx.blb 2022-02-10 11:50 - 2022-02-02 18:05 - 088752176 _____ C:\Windows\system32\amd_comgr.dll 2022-02-10 11:50 - 2022-02-02 18:05 - 073118768 _____ C:\Windows\SysWOW64\amd_comgr32.dll 2022-02-10 11:50 - 2022-02-02 18:05 - 069065264 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdhip64.dll 2022-02-10 11:50 - 2022-02-02 18:05 - 000933424 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdlvr64.dll 2022-02-10 11:50 - 2022-02-02 18:05 - 000760880 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdlvr32.dll 2022-02-10 11:50 - 2022-02-02 18:05 - 000549936 _____ C:\Windows\system32\amdgfxinfo64.dll 2022-02-10 11:50 - 2022-02-02 18:05 - 000458288 _____ C:\Windows\system32\amdlogum.exe 2022-02-10 11:50 - 2022-02-02 18:05 - 000413232 _____ C:\Windows\SysWOW64\amdgfxinfo32.dll 2022-02-10 11:50 - 2022-02-02 18:05 - 000122928 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2022-02-10 11:50 - 2022-02-02 18:04 - 000538160 _____ C:\Windows\system32\amdmiracast.dll 2022-02-10 11:50 - 2022-02-02 18:04 - 000151648 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdave64.dll 2022-02-10 11:50 - 2022-02-02 18:04 - 000141288 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll 2022-02-10 11:50 - 2022-02-02 18:04 - 000126632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdave32.dll 2022-02-10 11:50 - 2022-02-02 18:04 - 000112648 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll 2022-02-10 11:50 - 2022-01-26 03:09 - 056264800 _____ C:\Windows\system32\amdxc64.so 2022-02-10 10:20 - 2022-02-10 10:20 - 000253408 _____ C:\Windows\SysWOW64\InstDrvMS.exe 2022-02-10 10:17 - 2022-02-10 10:17 - 000002206 _____ C:\Users\Public\Desktop\RGBFusion 2.0.lnk 2022-02-10 10:17 - 2022-02-10 10:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AORUS 2022-02-09 18:49 - 2022-02-09 18:49 - 000000000 ___HD C:\$WinREAgent 2022-02-09 18:44 - 2022-02-09 18:44 - 000288768 _____ C:\Windows\system32\Windows.Management.InprocObjects.dll 2022-02-09 18:44 - 2022-02-09 18:44 - 000272384 _____ C:\Windows\system32\TpmTool.exe 2022-02-09 18:44 - 2022-02-09 18:44 - 000223744 _____ C:\Windows\SysWOW64\TpmTool.exe 2022-02-09 18:44 - 2022-02-09 18:44 - 000162816 _____ C:\Windows\system32\DataStoreCacheDumpTool.exe 2022-02-09 18:44 - 2022-02-09 18:44 - 000011813 _____ C:\Windows\system32\DrtmAuthTxt.wim 2022-02-09 13:35 - 2022-02-10 11:53 - 000000000 ____D C:\Users\julie\AppData\LocalLow\AMD 2022-02-09 12:18 - 2022-02-09 12:18 - 000031811 _____ C:\Users\julie\Desktop\info 1ères techno.pdf 2022-02-09 10:13 - 2022-02-09 10:13 - 007290705 _____ C:\Users\julie\Desktop\HERM_004_0165.pdf 2022-02-08 13:36 - 2022-02-08 13:36 - 000002019 _____ C:\Users\julie\Desktop\ClashRoyale.lnk 2022-02-08 13:18 - 2022-02-08 13:18 - 000000000 ____D C:\Users\julie\AppData\Local\BlueStacks X 2022-02-08 13:16 - 2022-02-08 13:16 - 000003934 _____ C:\Windows\system32\Tasks\BlueStacksHelper_nxt 2022-02-08 13:16 - 2022-02-08 13:16 - 000002093 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks 5.lnk 2022-02-08 13:16 - 2022-02-08 13:16 - 000002091 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks 5 Multi-Instance Manager.lnk 2022-02-08 13:16 - 2022-02-08 13:16 - 000002079 _____ C:\Users\Public\Desktop\BlueStacks 5 Multi-Instance Manager.lnk 2022-02-08 13:16 - 2022-02-08 13:16 - 000001975 _____ C:\Users\Public\Desktop\BlueStacks 5.lnk 2022-02-08 13:15 - 2022-02-08 13:15 - 000006797 _____ C:\Users\julie\-1.14-windows.xml 2022-02-08 13:14 - 2022-02-12 10:28 - 000000000 ____D C:\ProgramData\BlueStacks_nxt 2022-02-08 13:14 - 2022-02-08 13:14 - 000000000 ____D C:\Program Files\BlueStacks_nxt 2022-02-08 13:08 - 2022-02-08 13:08 - 000002000 _____ C:\Users\Public\Desktop\BlueStacks X.lnk 2022-02-08 13:08 - 2022-02-08 13:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks X 2022-02-08 13:08 - 2022-02-08 13:08 - 000000000 ____D C:\Program Files (x86)\BlueStacks X 2022-02-08 13:06 - 2022-02-08 13:16 - 000000000 ____D C:\Users\julie\AppData\Local\BlueStacksSetup 2022-02-08 13:06 - 2022-02-08 13:14 - 000000000 ____D C:\Users\julie\AppData\Local\BlueStacks 2022-02-08 13:06 - 2022-02-08 13:06 - 000000000 ____D C:\Users\Public\BlueStacks 2022-02-07 19:34 - 2022-02-07 19:34 - 000000000 ____D C:\Users\julie\Desktop\structurez-votre-cv_exemple-2019-01-03T081950 2022-02-07 18:29 - 2022-02-07 21:10 - 000000000 ____D C:\Users\julie\Desktop\html page 2022-02-07 11:04 - 2022-02-07 11:04 - 000000735 _____ C:\Users\julie\Desktop\regle BRISSEUCONTEST3.txt 2022-02-06 15:43 - 2022-02-06 15:43 - 000000000 ____D C:\Program Files\Sublime Text 3 2022-02-06 15:42 - 2022-02-06 15:43 - 000000000 ____D C:\Users\julie\AppData\Roaming\Sublime Text 3 2022-02-06 15:42 - 2022-02-06 15:43 - 000000000 ____D C:\Users\julie\AppData\Local\Sublime Text 3 2022-02-06 15:41 - 2022-02-06 15:41 - 000000927 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sublime Text 3.lnk 2022-02-05 09:49 - 2022-02-05 09:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2022-02-02 03:36 - 2022-02-02 03:36 - 000047600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-stable.sys 2022-02-02 03:36 - 2022-02-02 03:36 - 000047600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-dev.sys 2022-02-02 03:36 - 2022-02-02 03:36 - 000047600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-canary.sys 2022-02-02 03:36 - 2022-02-02 03:36 - 000044328 _____ (Dropbox, Inc.) C:\Windows\system32\DbxSvc.exe 2022-01-29 09:16 - 2022-01-29 09:16 - 000001441 _____ C:\Users\julie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Anastasiy's Extension Manager.lnk 2022-01-29 09:16 - 2022-01-29 09:16 - 000000000 ____D C:\Users\julie\Documents\Anastasiy Extension Manager 2022-01-28 17:59 - 2022-02-02 18:06 - 001528368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiacm64.dll 2022-01-27 20:19 - 2022-02-12 13:38 - 000248992 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys 2022-01-27 20:19 - 2022-01-27 20:19 - 000160176 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys 2022-01-27 20:19 - 2022-01-27 20:19 - 000019912 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamElam.sys 2022-01-27 20:19 - 2022-01-27 20:19 - 000002033 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2022-01-27 20:18 - 2022-01-27 20:18 - 000000000 ____D C:\ProgramData\Malwarebytes 2022-01-27 20:10 - 2022-01-27 20:10 - 000000000 ____D C:\Users\julie\AppData\Local\Yandex 2022-01-25 21:01 - 2022-01-25 21:01 - 000562688 _____ (Advanced Micro Devices) C:\Windows\system32\Device.dll 2022-01-25 21:01 - 2022-01-25 21:01 - 000058880 _____ (Advanced Micro Devices) C:\Windows\system32\Platform.dll 2022-01-25 08:45 - 2022-01-25 08:45 - 000043336 _____ (Advanced Micro Devices) C:\Windows\system32\AMDRyzenMasterDriver.sys 2022-01-21 22:09 - 2022-01-21 22:09 - 000004076 _____ C:\Windows\system32\Tasks\WpsExternal_julien_20220121220920 2022-01-14 17:41 - 2022-02-02 18:05 - 000142936 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2022-01-14 17:22 - 2022-01-14 17:22 - 000523776 _____ (curl, hxxps://curl.se/) C:\Windows\system32\curl.exe 2022-01-14 17:22 - 2022-01-14 17:22 - 000464384 _____ (curl, hxxps://curl.se/) C:\Windows\SysWOW64\curl.exe 2022-01-13 18:01 - 2022-01-13 18:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi 2022-01-13 18:01 - 2022-01-13 18:01 - 000000000 ____D C:\Program Files\LGHUB ==================== One month (modified) ================== (If an entry is included in the fixlist, the file/folder will be moved.) 2022-02-12 13:38 - 2020-07-18 23:45 - 000008192 ___SH C:\DumpStack.log.tmp 2022-02-12 13:38 - 2019-12-07 10:03 - 000786432 _____ C:\Windows\system32\config\BBI 2022-02-12 13:37 - 2021-10-09 20:32 - 000000000 ____D C:\Users\julie\AppData\Local\Everything 2022-02-12 13:37 - 2021-10-09 20:03 - 000000000 ____D C:\Users\julie\AppData\Roaming\Everything 2022-02-12 13:37 - 2021-09-26 12:48 - 000000000 ____D C:\Users\julie\AppData\Roaming\discord 2022-02-12 13:37 - 2021-08-30 10:19 - 000000000 ____D C:\Users\julie\AppData\Roaming\LGHUB 2022-02-12 13:37 - 2021-05-21 12:43 - 000070095 _____ C:\Users\julie\AppData\Roaming\VoiceMeeterPotatoDefault.xml 2022-02-12 13:37 - 2021-04-20 09:48 - 000000000 ____D C:\Users\julie\AppData\Roaming\Notion 2022-02-12 13:37 - 2020-07-18 23:45 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2022-02-12 13:37 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness 2022-02-12 13:37 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-02-12 13:35 - 2020-07-18 18:16 - 000000000 ____D C:\Program Files (x86)\Google 2022-02-12 13:22 - 2021-08-30 10:19 - 000000000 ____D C:\Users\julie\AppData\Local\LGHUB 2022-02-12 11:51 - 2021-09-26 12:48 - 000000000 ____D C:\Users\julie\AppData\Local\Discord 2022-02-12 11:03 - 2021-11-04 17:08 - 002237928 _____ (Microsoft Corporation) C:\Windows\system32\xgameruntime.dll 2022-02-12 11:03 - 2021-11-04 17:08 - 000131072 _____ (Microsoft Corporation) C:\Windows\system32\gamingtcuihelpers.dll 2022-02-12 11:03 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2022-02-12 11:03 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF 2022-02-12 11:02 - 2021-11-23 18:10 - 000120296 _____ (Microsoft Corporation) C:\Windows\system32\gamelaunchhelper.dll 2022-02-12 11:02 - 2021-11-04 17:08 - 000337360 _____ (Microsoft Corporation) C:\Windows\system32\gameplatformservices.dll 2022-02-12 11:02 - 2021-11-04 17:08 - 000217536 _____ (Microsoft Corporation) C:\Windows\system32\gamingservicesproxy.dll 2022-02-12 11:02 - 2021-11-04 17:08 - 000198096 _____ (Microsoft Corporation) C:\Windows\system32\gameconfighelper.dll 2022-02-12 11:02 - 2021-11-04 17:08 - 000061888 _____ (Microsoft Corporation) C:\Windows\system32\gamemodcontrol.exe 2022-02-12 11:01 - 2020-07-19 17:01 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData 2022-02-12 10:57 - 2020-07-18 17:52 - 000005838 _____ C:\Windows\system32\PerfStringBackup.INI 2022-02-12 10:57 - 2019-12-07 15:50 - 004772466 _____ C:\Windows\system32\perfh00C.dat 2022-02-12 10:57 - 2019-12-07 15:50 - 001350712 _____ C:\Windows\system32\perfc00C.dat 2022-02-12 10:53 - 2020-07-22 12:08 - 000000000 ____D C:\Program Files\CCleaner 2022-02-12 10:52 - 2021-08-03 10:01 - 000000000 ____D C:\Users\julie\AppData\Local\Dropbox 2022-02-12 10:51 - 2021-10-09 10:01 - 000000000 ____D C:\Windows\system32\Tasks\PowerToys 2022-02-12 10:51 - 2021-02-14 11:00 - 000000000 ____D C:\Users\julie\AppData\Local\GBTTemp 2022-02-12 10:51 - 2020-07-21 19:46 - 000000000 ____D C:\Program Files (x86)\TeamViewer 2022-02-12 10:19 - 2020-07-18 18:04 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-02-11 21:45 - 2019-12-07 10:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel 2022-02-11 21:31 - 2021-07-31 12:29 - 000000000 ____D C:\Users\julie\AppData\Roaming\WhatsApp 2022-02-11 21:21 - 2020-12-12 15:46 - 000000000 ____D C:\Users\julie\AppData\Roaming\lunarclient 2022-02-11 20:37 - 2020-07-19 02:02 - 000000000 ____D C:\Users\julie\AppData\Roaming\.minecraft 2022-02-11 20:35 - 2020-07-31 15:27 - 000000000 ____D C:\Program Files (x86)\Java 2022-02-11 20:30 - 2020-07-19 02:02 - 000000000 ____D C:\Program Files (x86)\Minecraft Launcher 2022-02-11 19:21 - 2020-07-24 17:37 - 000000000 ____D C:\Users\julie\AppData\Local\CrashDumps 2022-02-11 18:52 - 2019-12-07 10:03 - 000032768 _____ C:\Windows\system32\config\ELAM 2022-02-11 18:47 - 2019-12-07 10:14 - 000000000 ___HD C:\Windows\ELAMBKUP 2022-02-10 20:11 - 2020-07-18 17:59 - 000000000 __RHD C:\Users\Public\AccountPictures 2022-02-10 19:31 - 2020-07-18 23:45 - 000000000 ____D C:\Windows\system32\SleepStudy 2022-02-10 17:43 - 2020-07-18 23:45 - 000000000 ____D C:\Windows\system32\Drivers\wd 2022-02-10 16:35 - 2020-09-30 14:56 - 000000000 ____D C:\Users\julie\AppData\Roaming\audacity 2022-02-10 16:27 - 2020-07-22 12:08 - 000003936 _____ C:\Windows\system32\Tasks\CCleaner Update 2022-02-10 16:26 - 2020-07-18 18:27 - 000000000 ____D C:\Users\julie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2022-02-10 16:26 - 2020-07-18 18:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2022-02-10 16:26 - 2020-07-18 18:27 - 000000000 ____D C:\Program Files\WinRAR 2022-02-10 14:29 - 2021-02-13 14:03 - 000000000 ____D C:\Users\julie\AppData\Roaming\obs-studio 2022-02-10 12:01 - 2020-07-19 16:58 - 000000000 ____D C:\Users\julie\AppData\Local\AMD 2022-02-10 11:56 - 2020-07-19 01:07 - 000000000 ____D C:\Program Files\AMD 2022-02-10 11:51 - 2020-07-19 16:38 - 000000000 ____D C:\AMD 2022-02-10 11:44 - 2021-01-05 18:23 - 000000000 ____D C:\Users\julie\AppData\Local\AMD_Common 2022-02-10 10:35 - 2021-08-03 14:55 - 000000000 ____D C:\Users\julie\AppData\Roaming\vlc 2022-02-10 10:20 - 2020-07-18 18:42 - 000000000 ____D C:\ProgramData\Package Cache 2022-02-10 10:19 - 2020-07-19 01:12 - 000000000 ____D C:\Program Files\ENE 2022-02-10 10:17 - 2020-07-19 01:12 - 000000000 ____D C:\Users\julie\AppData\Local\Downloaded Installations 2022-02-09 22:33 - 2020-07-18 18:30 - 000000000 ____D C:\Program Files (x86)\Steam 2022-02-09 20:36 - 2020-10-08 20:10 - 000000000 ____D C:\Users\julie\AppData\Roaming\Code 2022-02-09 18:56 - 2020-07-18 23:45 - 001738616 _____ C:\Windows\system32\FNTCACHE.DAT 2022-02-09 18:55 - 2019-12-07 15:53 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2022-02-09 18:55 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\Dism 2022-02-09 18:55 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SystemResources 2022-02-09 18:55 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\et-EE 2022-02-09 18:55 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\es-MX 2022-02-09 18:55 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\Dism 2022-02-09 18:55 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\appraiser 2022-02-09 18:55 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\ShellExperiences 2022-02-09 18:55 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\PolicyDefinitions 2022-02-09 18:55 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\bcastdvr 2022-02-09 18:55 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\servicing 2022-02-09 18:54 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\CbsTemp 2022-02-09 18:44 - 2020-07-18 17:49 - 002877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll 2022-02-09 18:39 - 2020-07-28 08:42 - 000000000 ____D C:\Windows\system32\MRT 2022-02-09 18:36 - 2020-07-28 08:42 - 149611728 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2022-02-08 20:07 - 2021-09-17 20:40 - 000001434 _____ C:\Users\julie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navigateur Opera GX.lnk 2022-02-08 20:07 - 2021-01-31 16:55 - 000004232 _____ C:\Windows\system32\Tasks\Opera GX scheduled Autoupdate 1612108524 2022-02-08 13:16 - 2020-07-18 17:52 - 000000000 ____D C:\Users\julie 2022-02-07 11:03 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\NDF 2022-02-07 09:54 - 2021-01-23 20:40 - 000000000 ____D C:\ProgramData\Voicemod 2022-02-05 11:57 - 2020-07-18 18:01 - 000000000 ____D C:\Users\julie\AppData\Local\PlaceholderTileLogoFolder 2022-02-05 11:50 - 2019-12-07 15:53 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2022-02-05 11:50 - 2019-12-07 15:53 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2022-02-05 11:50 - 2019-12-07 15:50 - 000000000 ____D C:\Windows\SysWOW64\winrm 2022-02-05 11:50 - 2019-12-07 15:50 - 000000000 ____D C:\Windows\SysWOW64\WCN 2022-02-05 11:50 - 2019-12-07 15:50 - 000000000 ____D C:\Windows\SysWOW64\slmgr 2022-02-05 11:50 - 2019-12-07 15:50 - 000000000 ____D C:\Windows\SysWOW64\Printing_Admin_Scripts 2022-02-05 11:50 - 2019-12-07 15:50 - 000000000 ____D C:\Windows\system32\winrm 2022-02-05 11:50 - 2019-12-07 15:50 - 000000000 ____D C:\Windows\system32\WCN 2022-02-05 11:50 - 2019-12-07 15:50 - 000000000 ____D C:\Windows\system32\slmgr 2022-02-05 11:50 - 2019-12-07 15:50 - 000000000 ____D C:\Windows\system32\Printing_Admin_Scripts 2022-02-05 11:50 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\SysWOW64\F12 2022-02-05 11:50 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\SysWOW64\DiagSvcs 2022-02-05 11:50 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\system32\F12 2022-02-05 11:50 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\system32\dsc 2022-02-05 11:50 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\system32\DiagSvcs 2022-02-05 11:50 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\WinBioPlugIns 2022-02-05 11:50 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\SystemResetPlatform 2022-02-05 11:50 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\PerceptionSimulation 2022-02-05 11:50 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\migwiz 2022-02-05 11:50 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows Defender 2022-02-05 11:50 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender 2022-02-05 11:49 - 2019-12-07 15:52 - 000000000 ____D C:\Windows\OCR 2022-02-05 11:31 - 2020-07-18 17:59 - 000000000 ____D C:\Users\julie\AppData\Local\Packages 2022-02-05 09:49 - 2020-09-19 18:48 - 000000000 ____D C:\Program Files (x86)\Dropbox 2022-02-02 21:12 - 2020-09-21 17:06 - 000000000 ____D C:\Program Files\Microsoft Office 2022-02-02 18:06 - 2021-09-28 20:01 - 001396824 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxx.dll 2022-02-02 18:06 - 2020-07-19 16:48 - 001858608 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll 2022-02-02 18:05 - 2020-07-19 16:48 - 000201656 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdihk64.dll 2022-02-02 18:05 - 2020-07-14 15:15 - 000168184 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdihk32.dll 2022-01-31 19:12 - 2021-09-18 13:19 - 000000000 ____D C:\ProgramData\boost_interprocess 2022-01-29 17:26 - 2020-07-20 10:36 - 000000000 ____D C:\Users\julie\Documents\Adobe 2022-01-29 10:17 - 2021-12-09 20:19 - 000000000 ____D C:\Users\julie\AppData\Local\WhatsApp 2022-01-29 09:16 - 2020-07-19 16:53 - 000000000 ____D C:\ProgramData\Adobe 2022-01-29 09:16 - 2020-07-18 17:59 - 000000000 ____D C:\Users\julie\AppData\Roaming\Adobe 2022-01-28 07:20 - 2020-07-18 18:02 - 000003634 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-01-28 07:20 - 2020-07-18 18:02 - 000003510 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2022-01-27 20:18 - 2020-07-22 19:26 - 000000000 ____D C:\Program Files\Malwarebytes 2022-01-26 03:35 - 2021-04-07 10:26 - 002414280 _____ (AMD Inc.) C:\Windows\SysWOW64\AMDBugReportTool.exe 2022-01-21 22:09 - 2021-10-28 12:41 - 000003758 _____ C:\Windows\system32\Tasks\WpsUpdateTask_julien 2022-01-20 17:30 - 2020-07-18 18:16 - 000003590 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA 2022-01-20 17:30 - 2020-07-18 18:16 - 000003466 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore 2022-01-14 17:45 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\setup 2022-01-14 17:45 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\oobe ==================== Files in the root of some directories ======== 2021-02-18 20:06 - 2021-06-13 13:27 - 000000016 _____ () C:\Users\julie\AppData\Roaming\obs-virtualcam.txt 2021-10-24 12:39 - 2021-10-24 12:41 - 000000037 _____ () C:\Users\julie\AppData\Roaming\renamy.names 2021-05-21 09:07 - 2021-06-27 16:01 - 000006098 _____ () C:\Users\julie\AppData\Roaming\VoiceMeeterDefault.xml 2021-05-21 12:43 - 2022-02-12 13:37 - 000070095 _____ () C:\Users\julie\AppData\Roaming\VoiceMeeterPotatoDefault.xml 2020-08-06 15:35 - 2021-09-04 16:44 - 000001456 _____ () C:\Users\julie\AppData\Local\Adobe Enregistrer pour le Web 13.0 Prefs 2020-07-19 16:58 - 2020-07-19 16:58 - 000000410 _____ () C:\Users\julie\AppData\Local\oobelibMkey.log 2020-07-19 03:54 - 2020-10-31 11:46 - 000007596 _____ () C:\Users\julie\AppData\Local\resmon.resmoncfg ==================== SigCheck ============================ (There is no automatic fix for files that do not pass verification.) ==================== End of FRST.txt ========================