Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 27-02-2022 Exécuté par Win (administrateur) sur DESKTOP-3KI949B (Micro-Star International Co., Ltd. MS-7C88) (04-03-2022 17:52:36) Exécuté depuis C:\Users\Win\Downloads Profils chargés: Win Plate-forme: Microsoft Windows 10 Famille Version 21H2 19044.1526 (X64) Langue: Français (France) Navigateur par défaut: Chrome Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe (C:\Program Files (x86)\Overwolf\Overwolf.exe ->) (Overwolf Ltd -> Overwolf LTD) C:\Program Files (x86)\Common Files\Overwolf\0.190.0.13\OverwolfHelper.exe (C:\Program Files (x86)\Overwolf\Overwolf.exe ->) (Overwolf Ltd -> Overwolf LTD) C:\Program Files (x86)\Common Files\Overwolf\0.190.0.13\OverwolfHelper64.exe (C:\Program Files (x86)\Overwolf\Overwolf.exe ->) (Overwolf Ltd -> Overwolf LTD) C:\Program Files (x86)\Overwolf\0.190.0.13\OverwolfBrowser.exe <3> (C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe ->) (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe (C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MpCopyAccelerator.exe (DriverStore\FileRepository\u0373652.inf_amd64_97d024528a122d1a\B372726\atiesrxx.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0373652.inf_amd64_97d024528a122d1a\B372726\atieclxx.exe (explorer.exe ->) (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe (explorer.exe ->) (Charles Milette) C:\Program Files\WindowsApps\28017CharlesMilette.TranslucentTB_9.0.0.0_x86__v826wp6bftszj\TranslucentTB\TranslucentTB.exe (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <23> (explorer.exe ->) (Lavasoft Software Canada Inc. -> Lavasoft) C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe (explorer.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2108.1001.8.0_x64__8wekyb3d8bbwe\XboxAppServices.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler64.exe (Overwolf Ltd -> Overwolf LTD) C:\Program Files (x86)\Overwolf\Overwolf.exe (services.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0373652.inf_amd64_97d024528a122d1a\B372726\atiesrxx.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe (services.exe ->) (Lavasoft Software Canada Inc. -> ) C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.WCAssistant.WinService.exe (services.exe ->) (Lavasoft Software Canada Inc. -> ) C:\Program Files (x86)\Lavasoft\Web Companion\Service\x64\DCIService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_3.62.18001.0_x64__8wekyb3d8bbwe\gamingservices.exe (services.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_3.62.18001.0_x64__8wekyb3d8bbwe\gamingservicesnet.exe (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\NisSrv.exe (services.exe ->) (Parsec Cloud, Inc. -> Parsec) C:\Program Files\Parsec\pservice.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\SDXHelper.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.721.8052.0_x64__8wekyb3d8bbwe\GameBar.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.721.8052.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKU\S-1-5-21-2109788823-578271313-3046296331-1001\...\Run: [Discord] => C:\Users\Win\AppData\Local\Discord\Update.exe [1512760 2020-12-03] (Discord Inc. -> GitHub) HKU\S-1-5-21-2109788823-578271313-3046296331-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4268456 2022-01-16] (Valve Corp. -> Valve Corporation) HKU\S-1-5-21-2109788823-578271313-3046296331-1001\...\Run: [Parsec.App.0] => C:\Program Files\Parsec\parsecd.exe [431120 2020-12-29] (Parsec Cloud, Inc. -> Parsec) HKU\S-1-5-21-2109788823-578271313-3046296331-1001\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe [1802072 2022-02-08] (Overwolf Ltd -> Overwolf Ltd.) HKU\S-1-5-21-2109788823-578271313-3046296331-1001\...\Run: [WallpaperEngine] => "C:\Users\Win\Desktop\Wallpaper Engine Canal Descomplicado\wallpaper64.exe" -silent (Pas de fichier) HKU\S-1-5-21-2109788823-578271313-3046296331-1001\...\Run: [AMDDVR] => C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe [2496592 2021-03-10] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) HKU\S-1-5-21-2109788823-578271313-3046296331-1001\...\Run: [com.blitz.app] => C:\Users\Win\AppData\Local\Programs\Blitz\Blitz.exe --autostart (Pas de fichier) HKU\S-1-5-21-2109788823-578271313-3046296331-1001\...\Run: [Web Companion] => C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe [9250224 2021-11-20] (Lavasoft Software Canada Inc. -> Lavasoft) HKU\S-1-5-21-2109788823-578271313-3046296331-1001\...\Run: [utweb] => "C:\Users\Win\AppData\Roaming\uTorrent Web\utweb.exe" /MINIMIZED (Pas de fichier) HKU\S-1-5-21-2109788823-578271313-3046296331-1001\...\Run: [EpicGamesLauncher] => D:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [33650656 2022-02-17] (Epic Games Inc. -> Epic Games, Inc.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\99.0.4844.51\Installer\chrmstp.exe [2022-03-01] (Google LLC -> Google LLC) Startup: C:\Users\Win\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Twitch.lnk [2021-01-09] ShortcutTarget: Twitch.lnk -> C:\Users\Win\AppData\Roaming\Twitch\Bin\Twitch.exe (Twitch Interactive, Inc. -> Twitch Interactive, Inc.) HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {02B8DD27-8439-4FD3-8B3F-4B5E8082D208} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2539864 2022-02-08] (Overwolf Ltd -> Overwolf LTD) Task: {0BFC8A58-3E24-4BC8-8446-1DCD618000AF} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-12-23] (Google LLC -> Google LLC) Task: {10B04426-A737-4FC7-894F-919DAE2E5F59} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MpCmdRun.exe [925848 2022-02-10] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {11C9F478-CA64-4BE1-A174-3F15F27D636B} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB" Task: {19243DA8-460D-4747-8EAF-C66A22F376A6} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [1706496 2020-11-23] () [Fichier non signé] Task: {1B3F7628-9D71-404D-B8FA-A6ACED36FDBF} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1709344 2021-03-10] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) Task: {262FDB25-745B-4538-A868-80CE057F78B4} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MpCmdRun.exe [925848 2022-02-10] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {3BAE2C01-802D-4549-A643-4F5A0B4E3E91} - System32\Tasks\Opera scheduled Autoupdate 1621768282 => C:\Users\Win\AppData\Local\Programs\Opera\launcher.exe [2256592 2021-12-21] (Opera Software AS -> Opera Software) Task: {6082B1B6-6CAF-4487-8C03-9DC0852C18AC} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [6481872 2022-03-03] (Microsoft Corporation -> Microsoft Corporation) Task: {64304BB7-DBAB-4B3C-B28E-EB9A547A9E19} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MpCmdRun.exe [925848 2022-02-10] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {6A78E6E8-C413-4D14-9888-1587486CD0CB} - System32\Tasks\Opera scheduled assistant Autoupdate 1621768290 => C:\Users\Win\AppData\Local\Programs\Opera\launcher.exe [2256592 2021-12-21] (Opera Software AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\Win\AppData\Local\Programs\Opera\assistant" $(Arg0) Task: {6C7A081A-6B13-4FCE-89C3-2515212AC207} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [111000 2022-03-03] (Microsoft Corporation -> Microsoft Corporation) Task: {7F270CB4-9830-4C1A-BFF5-6FD3D3A82234} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [60496 2021-03-10] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) Task: {8B016355-CBE0-40D4-AC9F-28558AADE937} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MpCmdRun.exe [925848 2022-02-10] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {CFE20922-BF2D-43C3-BDFB-784788A091AD} - System32\Tasks\AMDInstallLauncher => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1709344 2021-03-10] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) Task: {D152E25F-B6E9-430E-A8A0-BF3E68013619} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [111000 2022-03-03] (Microsoft Corporation -> Microsoft Corporation) Task: {E540DE8D-3DB3-4824-933D-61598403BB22} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-12-23] (Google LLC -> Google LLC) Task: {E7ED4D6D-0D4C-4508-9E61-00FCA1B022C4} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22580640 2022-03-03] (Microsoft Corporation -> Microsoft Corporation) Task: {E9B5E140-AF71-4859-ABFC-B9E906365124} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [68176 2021-03-10] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) Task: {EA55FD23-6D9A-4A77-BB58-0C1917C764DD} - System32\Tasks\Opera scheduled Autoupdate 1634489571 => C:\Users\Win\AppData\Local\Programs\Opera\launcher.exe [2256592 2021-12-21] (Opera Software AS -> Opera Software) Task: {EBCFCAE2-EC55-4098-95E4-47B08E81DE29} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22580640 2022-03-03] (Microsoft Corporation -> Microsoft Corporation) Task: {F09CE60C-E505-4623-99C9-B16CAE3576E3} - System32\Tasks\Opera scheduled assistant Autoupdate 1634489573 => C:\Users\Win\AppData\Local\Programs\Opera\launcher.exe [2256592 2021-12-21] (Opera Software AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\Win\AppData\Local\Programs\Opera\assistant" $(Arg0) Task: {F49D913A-14D3-43F9-BA1C-C4C649476122} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [6481872 2022-03-03] (Microsoft Corporation -> Microsoft Corporation) Task: {F8EF7AC9-2C36-43D1-AA32-DFDC062F01A1} - System32\Tasks\Intel PTT EK Recertification => C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\IntelPTTEKRecertification.exe [818008 2021-09-15] (Intel Corporation -> Intel(R) Corporation) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt Tcpip\Parameters: [DhcpNameServer] 62.197.111.140 109.88.203.3 Tcpip\..\Interfaces\{3fb80470-4ed0-4bef-bba6-2e687a87b864}: [DhcpNameServer] 62.197.111.140 109.88.203.3 Tcpip\..\Interfaces\{c34b4827-258c-4ab6-8391-ea82dbe042f9}: [DhcpNameServer] 192.168.10.1 Edge: ======= Edge Profile: C:\Users\Win\AppData\Local\Microsoft\Edge\User Data\Default [2022-03-04] FireFox: ======== FF DefaultProfile: ys48b0hz.default FF ProfilePath: C:\Users\Win\AppData\Roaming\Mozilla\Firefox\Profiles\ys48b0hz.default [2021-10-17] FF Homepage: Mozilla\Firefox\Profiles\ys48b0hz.default -> hxxps://mysearchengine.co/homepage?hp=1&bitmask=9996&pId=BT171001&iDate=2021-10-17 04:52:46&bName= FF NewTab: Mozilla\Firefox\Profiles\ys48b0hz.default -> hxxps://mysearchengine.co/homepage?hp=1&bitmask=9996&pId=BT171001&iDate=2021-10-17 04:52:46&bName= FF ProfilePath: C:\Users\Win\AppData\Roaming\Mozilla\Firefox\Profiles\qv210oba.default-release [2022-01-16] FF Homepage: Mozilla\Firefox\Profiles\qv210oba.default-release -> hxxps://mysearchengine.co/homepage?hp=1&bitmask=9996&pId=BT171001&iDate=2021-10-17 04:52:46&bName= FF NewTab: Mozilla\Firefox\Profiles\qv210oba.default-release -> hxxps://mysearchengine.co/homepage?hp=1&bitmask=9996&pId=BT171001&iDate=2021-10-17 04:52:46&bName= FF Notifications: Mozilla\Firefox\Profiles\qv210oba.default-release -> hxxps://firefile.cc FF Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\Win\AppData\Roaming\Mozilla\Firefox\Profiles\qv210oba.default-release\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2022-01-04] FF SearchPlugin: C:\Users\Win\AppData\Roaming\Mozilla\Firefox\Profiles\qv210oba.default-release\searchplugins\My Bing Search.xml [2021-10-17] FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2022-03-03] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-03-03] (Microsoft Corporation -> Microsoft Corporation) Chrome: ======= CHR Profile: C:\Users\Win\AppData\Local\Google\Chrome\User Data\Default [2022-03-04] CHR DownloadDir: D:\ CHR HomePage: Default -> hxxps://www.bing.com?pc=COS2&ptag=D101721-N0630A9FCDBB39EF&form=CONBDF&conlogo=CT3335799 CHR StartupUrls: Default -> "hxxps://www.bing.com?pc=COS2&ptag=D101721-N0630A9FCDBB39EF&form=CONBDF&conlogo=CT3335799" CHR NewTab: Default -> Not-active:"chrome-extension://flflmgamkhmfemamcaaaanoinhecoiho/tab11.html" CHR Extension: (Slides) - C:\Users\Win\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-12-23] CHR Extension: (Docs) - C:\Users\Win\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-12-23] CHR Extension: (Google Drive) - C:\Users\Win\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-12-23] CHR Extension: (YouTube) - C:\Users\Win\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-12-23] CHR Extension: (Sheets) - C:\Users\Win\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-12-23] CHR Extension: (Dragon Ball Live Wallpaper HD Nouvel onglet personnalisé) - C:\Users\Win\AppData\Local\Google\Chrome\User Data\Default\Extensions\flflmgamkhmfemamcaaaanoinhecoiho [2022-03-01] CHR Extension: (EditThisCookie) - C:\Users\Win\AppData\Local\Google\Chrome\User Data\Default\Extensions\fngmhnnpilhplaeedifhccceomclgfbg [2020-12-23] CHR Extension: (Google Docs hors connexion) - C:\Users\Win\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-02-16] CHR Extension: (AdBlock — le meilleur bloqueur de pubs) - C:\Users\Win\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2022-01-26] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Win\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29] CHR Extension: (Gmail) - C:\Users\Win\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-12-23] CHR Profile: C:\Users\Win\AppData\Local\Google\Chrome\User Data\System Profile [2020-12-23] Opera: ======= OPR Profile: C:\Users\Win\AppData\Roaming\Opera Software\Opera Stable [2022-01-04] OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding} OPR Extension: (Rich Hints Agent) - C:\Users\Win\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2021-12-29] OPR Extension: (Safe Torrent Scanner) - C:\Users\Win\AppData\Roaming\Opera Software\Opera Stable\Extensions\gpabaecgmgbeapjghcfhohnbljcocknl [2021-10-17] OPR Extension: (Amazon Assistant Promotion) - C:\Users\Win\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2021-10-17] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8901968 2021-02-24] (BattlEye Innovations e.K. -> ) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11649952 2022-03-03] (Microsoft Corporation -> Microsoft Corporation) R2 DCIService; C:\Program Files (x86)\Lavasoft\Web Companion\Service\x64\DCIService.exe [3413424 2021-11-20] (Lavasoft Software Canada Inc. -> ) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [812520 2022-01-22] (EasyAntiCheat Oy -> Epic Games, Inc) S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [16029472 2021-10-31] (Epic Games Inc. -> Epic Games, Inc.) S3 mracsvc; C:\Windows\System32\mracsvc.exe [20536992 2021-02-18] (Mail.Ru LLC -> LLC Mail.Ru) S3 OverwolfUpdater; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2539864 2022-02-08] (Overwolf Ltd -> Overwolf LTD) R2 Parsec; C:\Program Files\Parsec\pservice.exe [395968 2021-07-16] (Parsec Cloud, Inc. -> Parsec) S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [1934744 2021-06-25] (Rockstar Games, Inc. -> Rockstar Games) R2 WCAssistantService; C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.WCAssistant.WinService.exe [22960 2021-11-20] (Lavasoft Software Canada Inc. -> ) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\NisSrv.exe [2909208 2022-02-10] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MsMpEng.exe [128376 2022-02-10] (Microsoft Windows Publisher -> Microsoft Corporation) S2 EABackgroundService; "C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe" -start [X] ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R3 amdwddmg; C:\Windows\System32\DriverStore\FileRepository\u0373652.inf_amd64_97d024528a122d1a\B372726\amdkmdag.sys [80538504 2021-11-12] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) R3 AMDXE; C:\Windows\System32\drivers\amdxe.sys [62056 2020-07-27] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) R2 BdDci; C:\Windows\system32\DRIVERS\bddci.sys [367096 2021-11-20] (Bitdefender SRL -> Bitdefender) S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Fichier non signé] S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Fichier non signé] R3 MpKsl12044eea; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{ACCD368D-4321-4733-9C9D-80A568DFA9E4}\MpKslDrv.sys [135440 2022-03-04] (Microsoft Windows -> Microsoft Corporation) S3 mracdrv; C:\Windows\System32\drivers\mracdrv1.sys [19767024 2021-02-18] (Mail.Ru LLC -> LLC Mail.Ru) S3 Neac; C:\Windows\System32\drivers\NeacSafe.sys [3914832 2021-12-18] (NetEase(Hangzhou) Network Co. Ltd. -> 网易(杭州)网络有限公司杭州) R3 ViGEmBus; C:\Windows\System32\drivers\ViGEmBus.sys [69168 2020-01-10] (Microsoft Windows Hardware Compatibility Publisher -> Benjamin Höglinger-Stelzer) S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [48536 2022-02-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [438520 2022-02-10] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [90360 2022-02-10] (Microsoft Windows -> Microsoft Corporation) S3 xhunter1; C:\Windows\xhunter1.sys [2719256 2021-10-30] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-03-04 17:48 - 2022-03-04 17:49 - 000055161 _____ C:\Users\Win\Downloads\Addition.txt 2022-03-04 17:47 - 2022-03-04 17:52 - 000024255 _____ C:\Users\Win\Downloads\FRST.txt 2022-03-04 17:46 - 2022-03-04 17:52 - 000000000 ____D C:\FRST 2022-03-04 17:45 - 2022-03-04 17:45 - 002312192 _____ (Farbar) C:\Users\Win\Downloads\FRST64.exe 2022-03-04 17:33 - 2022-03-04 17:33 - 000007605 _____ C:\Users\Win\AppData\Local\Resmon.ResmonCfg 2022-03-03 00:31 - 2022-03-03 00:32 - 002331747 _____ C:\Users\Win\Downloads\MODSKIN_12.5.zip 2022-03-02 20:01 - 2022-03-03 00:32 - 000001203 _____ C:\Users\Public\Desktop\LOL SKIN.lnk 2022-03-02 20:00 - 2022-03-02 20:00 - 002330591 _____ C:\Users\Win\Desktop\MODSKIN_12.4.1 (1).zip 2022-03-01 23:47 - 2022-03-02 00:18 - 000000000 ____D C:\Users\Win\Documents\Assassin's Creed Origins 2022-03-01 23:46 - 2022-03-01 23:47 - 000000000 ____D C:\Users\Win\Documents\CPY_SAVES 2022-03-01 23:12 - 2022-03-01 23:05 - 2279331407 _____ C:\Users\Win\Desktop\Assassins Creed Origins By STG GEGE.part07.rar 2022-03-01 23:12 - 2020-10-29 03:53 - 000000000 ____D C:\Users\Win\Desktop\Assassins Creed Origins By STG GEGE 2022-03-01 22:55 - 2022-03-01 22:19 - 1073741824 _____ C:\Users\Win\Desktop\Assassins Creed Origins By STG GEGE.part06.rar 2022-03-01 21:53 - 2022-03-01 22:19 - 1073741824 _____ C:\Users\Win\Downloads\Assassins Creed Origins By STG GEGE.part06.rar 2022-03-01 21:51 - 2022-03-01 21:51 - 1073741824 _____ C:\Users\Win\Desktop\Assassins Creed Origins By STG GEGE.part05.rar 2022-03-01 21:24 - 2022-03-01 21:51 - 1073741824 _____ C:\Users\Win\Downloads\Assassins Creed Origins By STG GEGE.part05.rar 2022-03-01 21:23 - 2022-03-01 21:18 - 1073741824 _____ C:\Users\Win\Desktop\Assassins Creed Origins By STG GEGE.part04.rar 2022-03-01 20:50 - 2022-03-01 21:18 - 1073741824 _____ C:\Users\Win\Downloads\Assassins Creed Origins By STG GEGE.part04.rar 2022-03-01 20:49 - 2022-03-01 20:34 - 1073741824 _____ C:\Users\Win\Desktop\Assassins Creed Origins By STG GEGE.part03.rar 2022-03-01 20:05 - 2022-03-01 20:34 - 1073741824 _____ C:\Users\Win\Downloads\Assassins Creed Origins By STG GEGE.part03.rar 2022-03-01 19:54 - 2022-03-01 19:53 - 1073741824 _____ C:\Users\Win\Desktop\Assassins Creed Origins By STG GEGE.part02.rar 2022-03-01 19:28 - 2022-03-01 19:53 - 1073741824 _____ C:\Users\Win\Downloads\Assassins Creed Origins By STG GEGE.part02.rar 2022-03-01 19:25 - 2022-03-01 19:25 - 1073741824 _____ C:\Users\Win\Desktop\Assassins Creed Origins By STG GEGE.part01.rar 2022-03-01 19:01 - 2022-03-01 19:25 - 1073741824 _____ C:\Users\Win\Downloads\Assassins Creed Origins By STG GEGE.part01.rar 2022-02-28 21:16 - 2022-02-28 21:16 - 002330591 _____ C:\Users\Win\Downloads\MODSKIN_12.4.1 (2).zip 2022-02-28 16:31 - 2022-02-28 16:31 - 000000000 ____D C:\ProgramData\X360CE 2022-02-28 16:30 - 2022-02-28 16:30 - 001260736 _____ C:\Users\Win\Downloads\x64.rar 2022-02-28 16:30 - 2022-02-28 16:30 - 001260736 _____ C:\Users\Win\Desktop\x64.rar 2022-02-28 16:26 - 2022-02-28 16:26 - 003830195 _____ C:\Users\Win\Downloads\DS4Windows_3.0.18_x64.zip 2022-02-28 16:26 - 2022-02-28 16:26 - 003830195 _____ C:\Users\Win\Desktop\DS4Windows_3.0.18_x64.zip 2022-02-28 16:26 - 2021-08-17 19:40 - 000000000 ____D C:\Users\Win\Desktop\DS4Windows 2022-02-27 23:00 - 2022-02-27 23:10 - 000000000 ____D C:\Users\Win\AppData\Roaming\EldenRing 2022-02-27 21:02 - 2022-02-27 21:02 - 002330591 _____ C:\Users\Win\Downloads\MODSKIN_12.4.1 (1).zip 2022-02-27 18:37 - 2022-02-27 19:44 - 423454975 _____ C:\Users\Win\Downloads\ELDEN RING [FitGirl Repack].rar 2022-02-25 15:58 - 2022-02-25 15:58 - 000000000 ____D C:\Program Files\UNP 2022-02-18 23:19 - 2022-02-18 23:19 - 001738736 _____ C:\Users\Win\Downloads\Crénom, Baudelaire by Jean Teulé [Teulé Jean] (z-lib.org) (2).epub 2022-02-18 23:19 - 2022-02-18 23:19 - 000414803 _____ C:\Users\Win\Downloads\Entre deux mondes by Norek Olivier (z-lib.org).epub 2022-02-18 23:17 - 2022-02-18 23:17 - 001738736 _____ C:\Users\Win\Downloads\Crénom, Baudelaire by Jean Teulé [Teulé Jean] (z-lib.org).epub 2022-02-18 23:17 - 2022-02-18 23:17 - 001738736 _____ C:\Users\Win\Downloads\Crénom, Baudelaire by Jean Teulé [Teulé Jean] (z-lib.org) (1).epub 2022-02-18 23:17 - 2022-02-18 23:17 - 000001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2022-02-17 19:36 - 2022-02-17 19:36 - 002330591 _____ C:\Users\Win\Downloads\MODSKIN_12.4.1.zip 2022-02-14 17:57 - 2022-02-14 17:57 - 000288768 _____ C:\Windows\system32\Windows.Management.InprocObjects.dll 2022-02-14 17:57 - 2022-02-14 17:57 - 000272384 _____ C:\Windows\system32\TpmTool.exe 2022-02-14 17:57 - 2022-02-14 17:57 - 000223744 _____ C:\Windows\SysWOW64\TpmTool.exe 2022-02-14 17:57 - 2022-02-14 17:57 - 000162816 _____ C:\Windows\system32\DataStoreCacheDumpTool.exe 2022-02-14 17:57 - 2022-02-14 17:57 - 000011813 _____ C:\Windows\system32\DrtmAuthTxt.wim 2022-02-14 17:53 - 2022-02-14 17:53 - 000000000 ___HD C:\$WinREAgent 2022-02-12 23:08 - 2022-03-03 15:53 - 000001419 _____ C:\Users\Win\Desktop\Roblox Player.lnk 2022-02-12 23:08 - 2022-03-03 15:53 - 000001242 _____ C:\Users\Win\Desktop\Roblox Studio.lnk 2022-02-12 16:36 - 2022-02-12 16:36 - 002330050 _____ C:\Users\Win\Downloads\MODSKIN_12.3.zip 2022-02-06 18:03 - 2022-02-06 18:03 - 000000000 _____ C:\Users\Win\Downloads\4399 ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-03-04 17:37 - 2022-01-04 13:11 - 000000000 ___HD C:\Users\Win\.opera 2022-03-04 17:37 - 2020-12-23 20:41 - 000000000 ____D C:\Program Files (x86)\Google 2022-03-04 17:32 - 2021-01-06 15:54 - 000000000 ____D C:\Users\Win\AppData\Local\Overwolf 2022-03-04 17:32 - 2020-12-23 20:40 - 000000000 ___RD C:\Users\Win\OneDrive 2022-03-04 17:31 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-03-04 17:24 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2022-03-04 17:24 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness 2022-03-04 17:17 - 2020-12-23 20:44 - 001770910 _____ C:\Windows\system32\PerfStringBackup.INI 2022-03-04 17:17 - 2019-12-07 15:49 - 000791762 _____ C:\Windows\system32\perfh00C.dat 2022-03-04 17:17 - 2019-12-07 15:49 - 000149928 _____ C:\Windows\system32\perfc00C.dat 2022-03-04 17:17 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF 2022-03-04 17:16 - 2020-12-23 20:40 - 000000000 ____D C:\Users\Win\AppData\Roaming\discord 2022-03-04 17:15 - 2021-02-27 16:01 - 000000000 ____D C:\Users\Win\AppData\Local\Discord 2022-03-04 17:10 - 2020-09-27 08:51 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2022-03-04 17:10 - 2020-09-27 06:51 - 000008192 ___SH C:\DumpStack.log.tmp 2022-03-04 17:10 - 2019-12-07 10:03 - 000524288 _____ C:\Windows\system32\config\BBI 2022-03-04 12:31 - 2021-10-21 19:38 - 000004172 _____ C:\Windows\system32\Tasks\User_Feed_Synchronization-{ABD9BBAC-2405-4243-943F-40CE0EC854B0} 2022-03-03 17:40 - 2020-12-23 20:31 - 000000000 ____D C:\ProgramData\Riot Games 2022-03-03 15:53 - 2021-07-17 11:26 - 000000000 ____D C:\Users\Win\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox 2022-03-03 12:59 - 2021-10-24 15:21 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2022-03-03 00:32 - 2020-12-23 21:30 - 000000000 ____D C:\Fraps 2022-03-02 01:11 - 2020-12-23 22:19 - 000000000 ____D C:\Program Files (x86)\Steam 2022-03-01 23:47 - 2020-12-23 13:49 - 000000000 ____D C:\Users\Win\AppData\Local\D3DSCache 2022-03-01 21:48 - 2021-07-25 13:06 - 000000000 ____D C:\Games 2022-03-01 21:37 - 2020-12-23 20:42 - 000002245 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2022-03-01 21:37 - 2020-12-23 20:42 - 000002204 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2022-03-01 19:32 - 2020-12-23 22:23 - 000000000 ____D C:\Users\Win\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2022-03-01 19:31 - 2021-11-14 16:44 - 000000000 ____D C:\Users\Win\Desktop\Nouveau dossier 2022-03-01 19:31 - 2021-01-12 18:22 - 000000000 ____D C:\Users\Win\AppData\Local\Bluestacks 2022-03-01 00:32 - 2020-09-27 06:51 - 000441880 _____ C:\Windows\system32\FNTCACHE.DAT 2022-03-01 00:32 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\Dism 2022-03-01 00:32 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SystemResources 2022-03-01 00:32 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\et-EE 2022-03-01 00:32 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\es-MX 2022-03-01 00:32 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\Dism 2022-03-01 00:32 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\appraiser 2022-03-01 00:32 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\ShellExperiences 2022-03-01 00:32 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\PolicyDefinitions 2022-03-01 00:32 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\bcastdvr 2022-03-01 00:32 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\servicing 2022-02-28 20:54 - 2021-04-30 18:41 - 000000000 ____D C:\Users\Win\AppData\Local\CrashDumps 2022-02-28 17:41 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\LiveKernelReports 2022-02-27 23:02 - 2021-10-24 17:21 - 000002437 _____ C:\Windows\system32\Drivers\etc\hosts.rollback 2022-02-27 23:00 - 2021-10-24 17:16 - 000000000 ____D C:\Windows\SysWOW64\directx 2022-02-27 19:59 - 2020-09-27 06:51 - 000000000 ____D C:\Windows\system32\SleepStudy 2022-02-26 18:47 - 2021-11-18 18:34 - 000119232 _____ (Microsoft Corporation) C:\Windows\system32\gamelaunchhelper.dll 2022-02-26 18:47 - 2021-07-19 18:47 - 002236864 _____ (Microsoft Corporation) C:\Windows\system32\xgameruntime.dll 2022-02-26 18:47 - 2021-07-19 18:47 - 000337360 _____ (Microsoft Corporation) C:\Windows\system32\gameplatformservices.dll 2022-02-26 18:47 - 2021-07-19 18:47 - 000218576 _____ (Microsoft Corporation) C:\Windows\system32\gamingservicesproxy.dll 2022-02-26 18:47 - 2021-07-19 18:47 - 000198120 _____ (Microsoft Corporation) C:\Windows\system32\gameconfighelper.dll 2022-02-26 18:47 - 2021-07-19 18:47 - 000131072 _____ (Microsoft Corporation) C:\Windows\system32\gamingtcuihelpers.dll 2022-02-26 18:47 - 2021-07-19 18:47 - 000062928 _____ (Microsoft Corporation) C:\Windows\system32\gamemodcontrol.exe 2022-02-26 12:14 - 2020-09-27 08:54 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-02-23 18:43 - 2021-12-11 19:08 - 000003588 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2109788823-578271313-3046296331-1001 2022-02-23 18:43 - 2020-12-23 20:40 - 000003374 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2109788823-578271313-3046296331-1001 2022-02-23 18:43 - 2020-12-23 20:38 - 000002411 _____ C:\Users\Win\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2022-02-19 13:03 - 2020-12-30 22:55 - 000000000 ____D C:\Users\Win\AppData\Local\AMD_Common 2022-02-18 23:20 - 2020-12-23 20:38 - 000000000 ____D C:\Users\Win\AppData\Local\Packages 2022-02-18 21:40 - 2020-12-23 20:40 - 000002217 _____ C:\Users\Win\Desktop\Discord.lnk 2022-02-14 17:59 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\CbsTemp 2022-02-14 17:57 - 2020-09-27 08:53 - 002877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll 2022-02-14 17:52 - 2020-12-27 13:31 - 000000000 ____D C:\Windows\system32\MRT 2022-02-14 17:51 - 2020-12-27 13:31 - 149611728 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2022-02-13 13:36 - 2020-12-23 20:36 - 000000000 ____D C:\Users\Win\Documents\League of Legends 2022-02-13 13:34 - 2020-12-29 16:52 - 000000000 ____D C:\Users\Win\AppData\Roaming\obs-studio 2022-02-12 23:08 - 2021-07-17 11:26 - 000000254 _____ C:\Users\Win\AppData\LocalLow\rbxcsettings.rbx 2022-02-10 21:28 - 2020-12-23 20:38 - 000000000 ____D C:\Users\Win 2022-02-10 17:35 - 2020-09-27 08:51 - 000000000 ____D C:\Windows\system32\Drivers\wd 2022-02-10 17:25 - 2021-01-06 15:55 - 000000000 ____D C:\Program Files (x86)\Overwolf 2022-02-06 17:53 - 2021-02-22 17:26 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2022-02-02 12:54 - 2020-12-31 13:32 - 000000000 ____D C:\Users\Win\AppData\Local\ElevatedDiagnostics ==================== Fichiers à la racine de certains dossiers ======== 2021-07-25 13:06 - 2021-10-10 16:36 - 000000017 _____ () C:\Users\Win\AppData\Roaming\.cache3678791056.dat 2021-08-07 18:12 - 2021-12-10 17:26 - 000000032 _____ () C:\Users\Win\AppData\Roaming\.machineId 2021-05-23 12:11 - 2021-05-23 12:11 - 000000068 _____ () C:\Users\Win\AppData\Roaming\changzhi_leidian.data 2022-03-04 17:33 - 2022-03-04 17:33 - 000007605 _____ () C:\Users\Win\AppData\Local\Resmon.ResmonCfg ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================