Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 27-02-2022 Exécuté par kenny (administrateur) sur VIVOBOOK-PRO (ASUSTeK COMPUTER INC. X705UDR) (03-03-2022 09:21:45) Exécuté depuis C:\Users\kenny\Downloads Profils chargés: kenny Plate-forme: Microsoft Windows 11 Famille Version 21H2 22000.527 (X64) Langue: Français (France) Navigateur par défaut: Edge Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe (C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe ->) (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe (C:\Program Files (x86)\Common Files\Pulse Secure\JUNS\PulseSecureService.exe ->) (OPSWAT, Inc. -> OPSWAT, Inc.) C:\Program Files (x86)\Common Files\Pulse Secure\TNC Client Plugin\OPSWAT\wa_3rd_party_host_32.exe (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3> (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (C:\Program Files\WindowsApps\MicrosoftTeams_22042.700.1195.9062_x64__8wekyb3d8bbwe\msteams.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\98.0.1108.62\msedgewebview2.exe <6> (C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Scans\MsMpEngCP.exe (DriverStore\FileRepository\igdlh64.inf_amd64_fb9939a7d714d646\igfxCUIService.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_fb9939a7d714d646\igfxEM.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <26> (explorer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\mstsc.exe (explorer.exe ->) (Pulse Secure, LLC -> ) C:\Program Files (x86)\Common Files\Pulse Secure\JamUI\Pulse.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler64.exe (Intel\DPTF\esif_uf.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\dptf_helper.exe (Microsoft Corporation -> Microsoft Corporation) C:\Users\kenny\AppData\Local\Microsoft\Teams\current\Teams.exe <9> (Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe (services.exe ->) (Electronic Arts, Inc. -> Electronic Arts) D:\Origin\OriginWebHelperService.exe (services.exe ->) (Huawei Technologies Co., Ltd. -> ) [Fichier non signé] C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe (services.exe ->) (ICEpower a/s -> ICEpower A/S) C:\Windows\System32\ICEsoundService64.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_fb9939a7d714d646\igfxCUIService.exe (services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_fb9939a7d714d646\IntelCpHDCPSvc.exe (services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_fb9939a7d714d646\IntelCpHeciSvc.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\NisSrv.exe (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3> (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_ce72d4a089c320b0\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (Pulse Secure, LLC -> Pulse Secure, LLC) C:\Program Files (x86)\Common Files\Pulse Secure\JUNS\PulseSecureService.exe <2> (sihost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_3.2111.12605.0_x64__8wekyb3d8bbwe\Win32Bridge.Server.exe (svchost.exe ->) (ASUSTeK Computer Inc. -> ) C:\Program Files (x86)\ASUS\ASUS Hello\ASUSHelloBG.exe (svchost.exe ->) (Google Inc -> Google Inc.) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_3.2111.12605.0_x64__8wekyb3d8bbwe\Cortana.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20544.0_x64__8wekyb3d8bbwe\HxOutlook.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20544.0_x64__8wekyb3d8bbwe\HxTsr.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (svchost.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [Fichier non signé] HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [36760 2011-09-05] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [2904984 2011-09-05] (Adobe Systems, Incorporated -> Adobe Systems Inc.) HKLM-x32\...\Run: [PulseSecure] => C:\Program Files (x86)\Common Files\Pulse Secure\JamUI\Pulse.exe [4908472 2021-11-28] (Pulse Secure, LLC -> ) HKU\S-1-5-21-993065428-933369047-1668157295-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [35320448 2022-01-25] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-993065428-933369047-1668157295-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4109032 2021-06-09] (Valve -> Valve Corporation) HKU\S-1-5-21-993065428-933369047-1668157295-1001\...\Run: [HP ENVY 5540 series (NET)] => C:\Program Files\HP\HP ENVY 5540 series\Bin\ScanToPCActivationApp.exe [3770504 2017-03-27] (Hewlett Packard -> HP Inc.) HKU\S-1-5-21-993065428-933369047-1668157295-1001\...\Run: [MicrosoftEdgeAutoLaunch_A2D6DD7B9BFE8344E8CE3AB1C854D6DE] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 HKU\S-1-5-21-993065428-933369047-1668157295-1001\...\MountPoints2: {a41bf722-56ef-11ec-a11d-0492260ace7f} - "F:\OnePlus_setup.exe" /s HKLM\...\Windows x64\Print Processors\Canon MG2400 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDBW.DLL [30208 2013-03-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Windows x64\Print Processors\Canon MG6800 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDCR.DLL [30208 2015-03-15] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\Windows\system32\AdobePDF.dll [53656 2011-09-05] (Adobe Systems, Incorporated -> Adobe Systems Inc) HKLM\...\Print\Monitors\HP CE11 Status Monitor: C:\Windows\system32\hpinkstsCE11LM.dll [393352 2017-03-20] (Hewlett Packard -> HP Inc.) HKLM\...\Print\Monitors\PDF-XChange Lite Port Monitor: C:\WINDOWS\system32\pxcpmL.dll [2061184 2021-07-19] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\98.0.4758.102\Installer\chrmstp.exe [2022-02-17] (Google LLC -> Google LLC) HKLM\Software\...\Authentication\Credential Providers: [{4B9CAC01-6732-40d0-8B8F-B5B340F9D44F}] -> C:\Program Files (x86)\Common Files\Pulse Secure\JamUI\jamSSOCredProv64.dll [2021-11-28] (Pulse Secure, LLC -> ) HKLM\Software\...\Authentication\Credential Providers: [{4EFD0F35-BFBA-44eb-8F25-2B3530203C1D}] -> C:\Program Files (x86)\Common Files\Pulse Secure\JamUI\jamSSOCredProv64.dll [2021-11-28] (Pulse Secure, LLC -> ) HKLM\Software\...\Authentication\Credential Providers: [{C1258FBC-F04F-4862-B78A-DDAAEF4A9707}] -> C:\Program Files (x86)\Common Files\Pulse Secure\JamUI\jamSSOCredProv64.dll [2021-11-28] (Pulse Secure, LLC -> ) HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] -> HKLM\Software\...\Authentication\Credential Providers: [{EAB1A79F-DFAA-4faf-A7B9-A6652E97EE16}] -> C:\Program Files (x86)\Common Files\Pulse Secure\JamUI\jamSSOCredProv64.dll [2021-11-28] (Pulse Secure, LLC -> ) HKLM\Software\...\Authentication\Credential Provider Filters: [{3884BCAA-C611-4e2d-9105-E11B1203294E}] -> C:\Program Files (x86)\Common Files\Pulse Secure\JamUI\jamSSOCredProv64.dll [2021-11-28] (Pulse Secure, LLC -> ) ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {08E34DF2-5AB2-4889-9EF6-1F10CCA9EFC8} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [816960 2017-09-21] (Intel(R) Trust Services -> Intel(R) Corporation) Task: {08F41BE2-1FD9-4CC9-B772-F326F719F15A} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3339472 2022-02-03] (Nvidia Corporation -> NVIDIA Corporation) Task: {1457E3A8-68D1-4164-97EF-0A2FB6C7D926} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1009872 2021-11-02] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {1BD701A6-CBC5-440C-BCF1-2DA4971E39D0} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1656320 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation) Task: {1D5917D5-94E1-4C6B-9F60-EDE5B4120778} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [138600 2022-02-19] (Microsoft Corporation -> Microsoft Corporation) Task: {2039E7B9-BDED-4079-AF6C-DE07EF721E36} - System32\Tasks\ATK Package A22126881260 => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [124304 2017-11-24] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) Task: {2A5B2933-62B1-4373-9D1F-836D078DFE77} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3618080 2020-08-27] (Realtek Semiconductor Corp. -> Realtek Semiconductor) Task: {32305CB1-9FB6-4082-9BC7-9E982345E318} - System32\Tasks\ASUS Hello => C:\Program Files (x86)\ASUS\ASUS Hello\ASUSHelloBG.exe [642448 2018-05-31] (ASUSTeK Computer Inc. -> ) Task: {3484269D-C983-4B51-A60F-57C5D6EF6214} - System32\Tasks\Update Checker => C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [143160 2019-03-12] (ASUSTek Computer Inc. -> ASUSTek Computer Inc.) Task: {423C048F-86D8-41FD-B826-0DA0B84FF60F} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-11-26] (Google Inc -> Google Inc.) Task: {434C45DD-EFFD-42D9-BBE3-83C1E3844F89} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MpCmdRun.exe [925848 2022-02-10] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {4ECAF870-158D-4CC1-AF00-7FF1E5439452} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [138600 2022-02-19] (Microsoft Corporation -> Microsoft Corporation) Task: {4F0ADB7C-5021-4E04-960A-A4B9005BA9CE} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22880136 2022-02-19] (Microsoft Corporation -> Microsoft Corporation) Task: {595B6221-FC00-4171-B6B2-2E52E588B1BC} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1656320 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation) Task: {647BE401-6020-494D-9CE6-D29E85628A74} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1618352 2022-02-19] (Microsoft Corporation -> Microsoft Corporation) Task: {6510CEA7-0FE2-4701-B93E-49B1573A083F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MpCmdRun.exe [925848 2022-02-10] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {6E8CDB1C-B663-4784-BF25-CA80EBEB8B2D} - System32\Tasks\RtHDVBg_ListenToDevice => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3618080 2020-08-27] (Realtek Semiconductor Corp. -> Realtek Semiconductor) Task: {72A24E7E-4639-4987-B59D-5DAC0B95F9DC} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1656320 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation) Task: {86787F9C-A4B5-477D-A291-6C1752F09161} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MpCmdRun.exe [925848 2022-02-10] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {8D32D289-2242-4274-96AC-F7B5EB1A0115} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906752 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation) Task: {925E8C31-CCA8-46D8-9C2C-481A82157632} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [647376 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation) Task: {9E433C57-F635-492B-BCCD-50C955FCE350} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424 2021-11-18] (Adobe Inc. -> Adobe Inc.) Task: {A6F3E071-1152-45D4-9316-CEAFE0AFAF71} - System32\Tasks\HPCustParticipation HP ENVY 5540 series => C:\Program Files\HP\HP ENVY 5540 series\Bin\HPCustPartic.exe [6438536 2017-03-27] (Hewlett Packard -> HP Inc.) Task: {A80D06CF-A8A8-482C-B391-58F21F4C20A1} - System32\Tasks\ATK Package 36D18D69AFC3 => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [124304 2017-11-24] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) Task: {AE79D9D9-C907-4518-8CAD-2370527E68D5} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-11-26] (Google Inc -> Google Inc.) Task: {B79ACBD4-AC7A-46DC-B388-1CC2156C0615} - System32\Tasks\CCleanerSkipUAC - kenny => C:\Program Files\CCleaner\CCleaner.exe [29453952 2022-01-25] (Piriform Software Ltd -> Piriform Software Ltd) Task: {BACBEC67-E3F9-4F15-838D-B9C9FEF2B48C} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906752 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation) Task: {BBD9CD9D-0942-473A-9B59-5E4645B693DB} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-01-25] (Piriform Software Ltd -> Piriform) Task: {C967DEAF-0BCE-4DDE-9347-8BAA1424B3F1} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22880136 2022-02-19] (Microsoft Corporation -> Microsoft Corporation) Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => C:\WINDOWS\System32\MbaeParserTask.exe (Pas de fichier) Task: {D06EB5F2-7390-4269-98A5-C323543F2778} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [8573352 2022-02-03] (Microsoft Corporation -> Microsoft Corporation) Task: {D88E7598-A610-40B1-B59E-53639882F8C1} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1656320 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation) Task: {F716AB52-0253-4865-9677-BFB02C414D8E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MpCmdRun.exe [925848 2022-02-10] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {FB8CF1E0-3549-4903-A205-0EA811D64A8D} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [8573352 2022-02-03] (Microsoft Corporation -> Microsoft Corporation) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\..\Interfaces\{277c6530-0062-4b58-9a7e-3ae9a98af94b}: [DhcpNameServer] 192.168.61.132 Tcpip\..\Interfaces\{326fad82-44d8-46d8-a5d8-5874bdd04bbb}: [DhcpNameServer] 75.75.75.75 75.75.76.76 Tcpip\..\Interfaces\{3a71852f-1885-4244-9219-b28531b35fbe}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{618e575d-0916-4a9e-90b2-30d447e53b2d}: [DhcpNameServer] 192.168.28.45 Tcpip\..\Interfaces\{75d68e1b-41a8-4fc1-ae6b-5cb069ae6a5a}: [DhcpNameServer] 192.168.25.143 Tcpip\..\Interfaces\{b0d16e88-4711-4d88-b24c-45692766005d}: [NameServer] 10.60.16.23,10.60.21.56 Tcpip\..\Interfaces\{d48a74be-89f3-4c6d-a5fb-c42e6f3a02b9}: [NameServer] 10.60.16.23,10.60.21.56 Tcpip\..\Interfaces\{f7ffb812-ce11-4d43-aef6-95ec47304846}: [DhcpNameServer] 192.168.42.129 Edge: ======= Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)] Edge Extension: (Pas de nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [non trouvé(e)] Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)] Edge Extension: (Pas de nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [non trouvé(e)] Edge DefaultProfile: Default Edge Profile: C:\Users\kenny\AppData\Local\Microsoft\Edge\User Data\Default [2022-03-03] Edge Notifications: Default -> hxxps://web.whatsapp.com Edge HomePage: Default -> hxxps://www.bing.com/search?FORM=INCOH1&PC=IC05&PTAG=ICO-7ade236f Edge DefaultSearchURL: Default -> hxxp://www.google.com/search?q={searchTerms} Edge DefaultSearchKeyword: Default -> google.com_ FireFox: ======== FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn FF Extension: (Adobe Acrobat - Create PDF) - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2018-11-26] [] [non signé] FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-02-03] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2021-07-19] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2021-07-19] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2021-07-19] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2021-10-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2021-10-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2021-07-19] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2021-07-19] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2021-07-19] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll [2011-09-05] (Adobe Systems, Incorporated -> Adobe Systems Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-12-24] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-993065428-933369047-1668157295-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2021-07-19] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) FF Plugin HKU\S-1-5-21-993065428-933369047-1668157295-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2021-07-19] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) FF Plugin HKU\S-1-5-21-993065428-933369047-1668157295-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2021-07-19] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) Chrome: ======= CHR DefaultProfile: Profile 1 CHR Profile: C:\Users\kenny\AppData\Local\Google\Chrome\User Data\Profile 1 [2022-01-03] CHR Notifications: Profile 1 -> hxxps://messages.google.com; hxxps://www.malt.fr CHR Extension: (Slides) - C:\Users\kenny\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-03-23] CHR Extension: (Docs) - C:\Users\kenny\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2019-03-23] CHR Extension: (Google Drive) - C:\Users\kenny\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2022-01-03] CHR Extension: (YouTube) - C:\Users\kenny\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-03-23] CHR Extension: (Nimbus Screenshot & Screen Video Recorder) - C:\Users\kenny\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bpconcjcammlapcogcnnelfmaeghhagj [2019-12-25] CHR Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\kenny\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2022-01-03] CHR Extension: (Slate) - C:\Users\kenny\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cmhmcmgkegfffbbfobhjpdbimgmoohap [2019-05-16] CHR Extension: (Sheets) - C:\Users\kenny\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-03-23] CHR Extension: (Google Docs hors connexion) - C:\Users\kenny\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-01-03] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\kenny\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-01-03] CHR Extension: (Gmail) - C:\Users\kenny\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2022-01-03] CHR Profile: C:\Users\kenny\AppData\Local\Google\Chrome\User Data\System Profile [2021-11-11] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-11-18] (Adobe Inc. -> Adobe Inc.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12124536 2022-02-03] (Microsoft Corporation -> Microsoft Corporation) S2 DevActSvc; C:\Program Files (x86)\ASUS\ASUS Device Activation\DevActSvc.exe [325456 2018-06-12] (ASUSTek Computer Inc. -> ) S2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [82216 2020-03-23] (Mixbyte Inc -> Freemake) R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [190784 2019-12-27] (Huawei Technologies Co., Ltd. -> ) [Fichier non signé] S3 Origin Client Service; D:\Origin\OriginClientService.exe [2562776 2022-01-18] (Electronic Arts, Inc. -> Electronic Arts) R2 Origin Web Helper Service; D:\Origin\OriginWebHelperService.exe [3481312 2022-01-18] (Electronic Arts, Inc. -> Electronic Arts) R2 PulseSecureService; C:\Program Files (x86)\Common Files\Pulse Secure\JUNS\PulseSecureService.exe [448440 2021-11-28] (Pulse Secure, LLC -> Pulse Secure, LLC) S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [Fichier non signé] R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\NisSrv.exe [2909208 2022-02-10] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MsMpEng.exe [128376 2022-02-10] (Microsoft Windows Publisher -> Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvami.inf_amd64_ce72d4a089c320b0\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvami.inf_amd64_ce72d4a089c320b0\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20640 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35560 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.) R3 AsusPTPDrv; C:\WINDOWS\System32\drivers\AsusPTPFilter.sys [108504 2019-04-24] (ASUSTek Computer Inc. -> ASUSTek COMPUTER INC.) R1 ATKWMIACPIIO; C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [20096 2015-05-08] (Microsoft Windows Hardware Compatibility Publisher -> ASUSTek Computer Inc.) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [159864 2021-06-29] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2019-12-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) R3 HIDSwitch; C:\WINDOWS\System32\drivers\AsRadioControl.sys [32696 2020-11-19] (ASUSTek Computer Inc. -> ASUS) S3 Hsp; C:\WINDOWS\System32\drivers\Hsp.sys [110904 2022-02-08] (Microsoft Windows -> Microsoft Corporation) R1 jnprns; C:\WINDOWS\system32\DRIVERS\jnprns.sys [507192 2018-09-24] (Juniper Networks, Inc. -> Juniper Networks) R3 jnprva; C:\WINDOWS\System32\drivers\jnprva.sys [73872 2021-11-28] (Pulse Secure, LLC -> Pulse Secure) R3 JnprVaMgr; C:\WINDOWS\System32\drivers\jnprvamgr.sys [73152 2021-07-27] (Pulse Secure, LLC. -> Pulse Secure) R3 MpKsl4f004814; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D689F383-AA66-4F84-96FF-61721AEB934D}\MpKslDrv.sys [135440 2022-03-03] (Microsoft Windows -> Microsoft Corporation) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [48552 2021-11-01] (Microsoft Windows Hardware Compatibility Publisher -> NVIDIA Corporation) S3 PulseSAM; C:\WINDOWS\system32\Drivers\PulseSAM.sys [158272 2021-11-28] (Pulse Secure, LLC -> Pulse Secure, LLC) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167280 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 vmulti; C:\WINDOWS\System32\drivers\vmulti.sys [10752 2018-03-16] (Windows (R) Win 7 DDK provider) [Fichier non signé] S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [48536 2022-02-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [438520 2022-02-10] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [90360 2022-02-10] (Microsoft Windows -> Microsoft Corporation) S1 WinSetupMon; system32\DRIVERS\WinSetupMon.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-03-03 09:21 - 2022-03-03 09:22 - 000034266 _____ C:\Users\kenny\Downloads\FRST.txt 2022-03-03 09:20 - 2022-03-03 09:22 - 000000000 ____D C:\FRST 2022-03-03 09:19 - 2022-03-03 09:20 - 002312192 _____ (Farbar) C:\Users\kenny\Downloads\FRST64.exe 2022-03-03 00:08 - 2022-03-03 00:08 - 000000000 ____D C:\Users\kenny\AppData\Roaming\Cybelsoft 2022-03-01 18:59 - 2022-03-01 18:59 - 000154115 _____ C:\Users\kenny\Downloads\Résumé des rôles.pdf 2022-03-01 18:56 - 2022-03-01 18:56 - 000000000 ____D C:\Users\kenny\AppData\Local\Zoom 2022-03-01 18:55 - 2022-03-01 18:55 - 000000000 ____D C:\Users\kenny\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom 2022-03-01 18:50 - 2022-03-01 18:51 - 027640736 _____ C:\Users\kenny\Downloads\sjjm_F_123_r720P.mp4 2022-03-01 18:49 - 2022-03-01 18:50 - 026261263 _____ C:\Users\kenny\Downloads\sjjm_F_037_r720P.mp4 2022-03-01 18:33 - 2022-03-01 18:33 - 024305650 _____ C:\Users\kenny\Downloads\mwbv_F_202201_04_r720P.mp4 2022-03-01 18:32 - 2022-03-01 18:32 - 028639056 _____ C:\Users\kenny\Downloads\sjjm_F_121_r720P.mp4 2022-03-01 16:00 - 2022-03-01 16:00 - 000000000 ____D C:\Users\kenny\Downloads\Telegram Desktop 2022-02-27 19:23 - 2022-02-27 19:23 - 000139850 _____ C:\Users\kenny\Downloads\Programme Zoom - 28 février.pdf 2022-02-20 19:00 - 2022-02-20 19:00 - 000015024 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2022-02-20 18:59 - 2022-02-20 18:59 - 000210432 _____ C:\WINDOWS\system32\CloudIdWxhExtension.dll 2022-02-20 18:56 - 2022-02-20 18:56 - 000000000 ___HD C:\$WinREAgent 2022-02-20 18:43 - 2022-02-10 19:42 - 001905936 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2022-02-20 18:43 - 2022-02-10 19:42 - 001905936 _____ C:\WINDOWS\system32\vulkaninfo.exe 2022-02-20 18:43 - 2022-02-10 19:42 - 001478416 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2022-02-20 18:43 - 2022-02-10 19:42 - 001478416 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2022-02-20 18:43 - 2022-02-10 19:42 - 001467840 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2022-02-20 18:43 - 2022-02-10 19:42 - 001432336 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2022-02-20 18:43 - 2022-02-10 19:42 - 001432336 _____ C:\WINDOWS\system32\vulkan-1.dll 2022-02-20 18:43 - 2022-02-10 19:42 - 001209280 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2022-02-20 18:43 - 2022-02-10 19:42 - 001145616 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2022-02-20 18:43 - 2022-02-10 19:42 - 001145616 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2022-02-20 18:43 - 2022-02-10 19:39 - 001531872 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2022-02-20 18:43 - 2022-02-10 19:39 - 001176704 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2022-02-20 18:43 - 2022-02-10 19:39 - 000797112 _____ C:\WINDOWS\system32\nvofapi64.dll 2022-02-20 18:43 - 2022-02-10 19:39 - 000717760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll 2022-02-20 18:43 - 2022-02-10 19:39 - 000636032 _____ C:\WINDOWS\SysWOW64\nvofapi.dll 2022-02-20 18:43 - 2022-02-10 19:38 - 002120320 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2022-02-20 18:43 - 2022-02-10 19:38 - 001602728 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2022-02-20 18:43 - 2022-02-10 19:38 - 000983992 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2022-02-20 18:43 - 2022-02-10 19:38 - 000795584 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2022-02-20 18:43 - 2022-02-10 19:38 - 000711608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe 2022-02-20 18:43 - 2022-02-10 19:37 - 008612496 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2022-02-20 18:43 - 2022-02-10 19:37 - 007714960 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2022-02-20 18:43 - 2022-02-10 19:37 - 005727376 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2022-02-20 18:43 - 2022-02-10 19:37 - 005099152 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2022-02-20 18:43 - 2022-02-10 19:37 - 002935744 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2022-02-20 18:43 - 2022-02-10 19:37 - 000456848 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe 2022-02-20 18:43 - 2022-02-10 19:35 - 000849024 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe 2022-02-20 18:43 - 2022-02-10 19:34 - 006461040 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2022-02-20 18:43 - 2022-02-10 07:18 - 000089251 _____ C:\WINDOWS\system32\nvinfo.pb 2022-02-20 13:54 - 2022-02-20 17:09 - 000145895 _____ C:\Users\kenny\Downloads\Programme Zoom - 21 février.pdf 2022-02-15 18:25 - 2022-02-15 18:25 - 000196072 _____ C:\Users\kenny\Downloads\FSA.pdf 2022-02-11 08:12 - 2022-02-11 08:12 - 000003976 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-02-11 08:12 - 2022-02-11 08:12 - 000003940 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-02-11 08:12 - 2022-02-11 08:12 - 000001445 _____ C:\Users\Public\Desktop\GeForce Experience.lnk 2022-02-11 08:12 - 2022-02-11 08:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2022-02-11 08:12 - 2022-01-28 12:50 - 002859520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll 2022-02-11 08:12 - 2022-01-28 12:50 - 002201800 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll 2022-02-11 08:12 - 2022-01-28 12:50 - 001295872 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvRtmpStreamer64.dll 2022-02-11 08:11 - 2022-02-11 08:11 - 000004308 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-02-11 08:11 - 2022-02-11 08:11 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-02-11 08:11 - 2022-02-11 08:11 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-02-11 08:11 - 2022-02-11 08:11 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-02-11 08:11 - 2022-02-11 08:11 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-02-11 08:11 - 2021-11-23 08:38 - 000168648 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap64v.dll 2022-02-11 08:11 - 2021-11-23 08:38 - 000144584 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll 2022-02-11 08:11 - 2021-11-02 19:47 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat 2022-02-11 08:11 - 2021-11-01 04:00 - 000048552 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys 2022-02-11 08:11 - 2021-06-03 14:56 - 000043408 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\NvModuleTracker.sys 2022-02-11 08:11 - 2021-06-02 15:03 - 000067464 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvhci.sys 2022-02-08 12:24 - 2022-02-08 12:24 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient 2022-02-08 12:01 - 2022-02-08 12:01 - 000339968 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll 2022-02-08 12:01 - 2022-02-08 12:01 - 000311296 _____ C:\WINDOWS\system32\EsclScan.dll 2022-02-08 12:01 - 2022-02-08 12:01 - 000188416 _____ C:\WINDOWS\system32\EsclProtocol.dll 2022-02-08 12:01 - 2022-02-08 12:01 - 000077824 _____ C:\WINDOWS\system32\APMonUI.dll 2022-02-03 15:01 - 2022-02-03 15:01 - 000171510 _____ C:\Users\kenny\Downloads\moi.jpeg ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-03-03 09:21 - 2021-06-05 19:21 - 000000000 ____D C:\WINDOWS\system32\FxsTmp 2022-03-03 09:18 - 2022-01-02 21:39 - 001709664 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2022-03-03 09:18 - 2021-06-05 19:14 - 000772574 _____ C:\WINDOWS\system32\perfh00C.dat 2022-03-03 09:18 - 2021-06-05 19:14 - 000148820 _____ C:\WINDOWS\system32\perfc00C.dat 2022-03-03 09:18 - 2021-06-05 13:09 - 000000000 ____D C:\WINDOWS\INF 2022-03-03 09:17 - 2022-01-02 21:40 - 000004168 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{72FF88AD-AFDF-4CE3-AAAE-A84648BEEB7F} 2022-03-03 09:17 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\AppReadiness 2022-03-03 09:16 - 2018-11-26 12:35 - 000000000 ____D C:\Program Files\CCleaner 2022-03-03 09:16 - 2018-11-26 12:31 - 000000000 ____D C:\Program Files (x86)\Google 2022-03-03 09:15 - 2018-10-31 16:35 - 000000000 __SHD C:\Users\kenny\IntelGraphicsProfiles 2022-03-03 09:15 - 2018-10-31 15:53 - 000000000 ____D C:\ProgramData\NVIDIA 2022-03-03 00:23 - 2021-06-05 13:10 - 000000000 ___HD C:\Program Files\WindowsApps 2022-03-03 00:23 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SystemTemp 2022-03-03 00:23 - 2018-11-26 12:37 - 000000000 ____D C:\ProgramData\Packages 2022-03-03 00:23 - 2018-10-31 16:35 - 000000000 ____D C:\Users\kenny\AppData\Local\Packages 2022-03-03 00:22 - 2018-10-31 15:51 - 000000000 ____D C:\Program Files (x86)\Intel 2022-03-03 00:22 - 2018-10-31 15:49 - 000000000 ____D C:\ProgramData\Package Cache 2022-03-03 00:20 - 2022-01-02 21:40 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2022-03-03 00:20 - 2022-01-02 21:36 - 005196896 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2022-03-03 00:20 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\ServiceState 2022-03-03 00:20 - 2021-06-05 13:10 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-03-03 00:20 - 2020-08-16 19:42 - 000012288 ___SH C:\DumpStack.log.tmp 2022-03-03 00:20 - 2018-10-31 15:50 - 000000000 ___HD C:\Intel 2022-03-03 00:19 - 2021-06-05 13:01 - 001310720 _____ C:\WINDOWS\system32\config\BBI 2022-03-03 00:18 - 2018-10-31 15:51 - 000000000 ____D C:\ProgramData\Intel 2022-03-03 00:08 - 2018-10-31 16:40 - 000002338 ____H C:\Users\kenny\Documents\Default.rdp 2022-03-02 23:20 - 2022-01-02 21:36 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2022-03-01 18:56 - 2020-03-20 19:41 - 000000000 ____D C:\Users\kenny\AppData\Roaming\Zoom 2022-03-01 18:55 - 2020-04-01 19:55 - 000001933 _____ C:\Users\kenny\Desktop\Zoom.lnk 2022-03-01 18:55 - 2018-11-26 12:39 - 000000000 ____D C:\Users\kenny\AppData\Local\D3DSCache 2022-03-01 12:43 - 2018-11-26 15:49 - 000000000 ____D C:\Users\kenny\AppData\Local\ElevatedDiagnostics 2022-03-01 11:53 - 2022-01-02 21:40 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2022-02-28 14:21 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2022-02-28 08:48 - 2022-01-02 21:40 - 000003584 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-993065428-933369047-1668157295-1001 2022-02-28 08:48 - 2022-01-02 21:40 - 000003370 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-993065428-933369047-1668157295-1001 2022-02-28 08:48 - 2020-08-16 19:43 - 000002419 _____ C:\Users\kenny\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2022-02-28 08:43 - 2022-01-05 16:16 - 000002400 _____ C:\Users\kenny\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams (work or school).lnk 2022-02-28 08:43 - 2022-01-05 16:16 - 000002392 _____ C:\Users\kenny\Desktop\Microsoft Teams (work or school).lnk 2022-02-27 19:08 - 2021-07-18 18:36 - 000000000 ____D C:\Users\kenny\Documents\Mariage 2022-02-26 15:55 - 2020-02-21 22:04 - 000002444 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-02-23 18:53 - 2018-11-26 14:56 - 000000000 ____D C:\Users\kenny\AppData\Local\CrashDumps 2022-02-21 20:12 - 2018-12-02 15:05 - 000000000 ____D C:\Users\kenny\Documents\JW 2022-02-20 19:10 - 2021-06-05 13:10 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2022-02-20 19:10 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2022-02-20 19:10 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SystemResources 2022-02-20 19:10 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\Dism 2022-02-20 19:10 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\appraiser 2022-02-20 19:10 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2022-02-20 19:10 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\bcastdvr 2022-02-20 19:03 - 2021-06-05 13:01 - 000000000 ____D C:\WINDOWS\CbsTemp 2022-02-20 18:59 - 2022-01-02 21:37 - 003101696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2022-02-20 18:46 - 2018-11-26 14:06 - 000000000 ____D C:\Users\kenny\AppData\Local\NVIDIA 2022-02-20 18:43 - 2018-10-31 15:53 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2022-02-20 18:38 - 2018-10-31 16:37 - 000000000 ____D C:\Users\kenny\AppData\Local\NVIDIA Corporation 2022-02-20 16:58 - 2021-04-25 10:22 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2022-02-19 10:08 - 2018-11-29 09:49 - 000000000 ____D C:\Program Files\Microsoft Office 2022-02-17 19:23 - 2018-12-25 07:03 - 000000000 ____D C:\Users\kenny\AppData\Roaming\vlc 2022-02-14 11:49 - 2018-11-30 14:58 - 000000132 _____ C:\Users\kenny\AppData\Roaming\Préfs Format PNG Adobe CS6 2022-02-11 08:12 - 2018-10-31 15:53 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2022-02-11 08:12 - 2018-10-31 15:52 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2022-02-11 08:11 - 2022-01-02 21:40 - 000003894 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-02-11 08:11 - 2022-01-02 21:40 - 000003654 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-02-11 07:27 - 2018-11-26 12:28 - 000000000 ____D C:\WINDOWS\system32\MRT 2022-02-11 07:26 - 2018-11-26 12:28 - 149611728 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2022-02-10 19:34 - 2021-12-02 10:41 - 007613344 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2022-02-10 08:08 - 2018-05-14 21:17 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2022-02-08 20:12 - 2021-07-11 15:07 - 000044289 _____ C:\Users\kenny\Desktop\Rapports d'activité.xlsx 2022-02-08 12:24 - 2021-06-05 13:01 - 000000000 ____D C:\WINDOWS\servicing 2022-02-03 16:58 - 2021-11-22 09:52 - 000001456 _____ C:\Users\kenny\AppData\Local\Adobe Enregistrer pour le Web 13.0 Prefs 2022-02-03 16:57 - 2018-12-02 15:04 - 000000000 ____D C:\Users\kenny\Documents\CV ==================== Fichiers à la racine de certains dossiers ======== 2021-08-18 10:37 - 2022-01-13 17:21 - 000000132 _____ () C:\Users\kenny\AppData\Roaming\Préfs Filtre IllExportation Adobe CS6 2018-11-30 14:58 - 2022-02-14 11:49 - 000000132 _____ () C:\Users\kenny\AppData\Roaming\Préfs Format PNG Adobe CS6 2021-11-22 09:52 - 2022-02-03 16:58 - 000001456 _____ () C:\Users\kenny\AppData\Local\Adobe Enregistrer pour le Web 13.0 Prefs 2019-06-20 10:41 - 2022-01-04 19:57 - 000007599 _____ () C:\Users\kenny\AppData\Local\Resmon.ResmonCfg ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================