Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 27-02-2022 Exécuté par gaeta (administrateur) sur LAPTOP-GTN (HP OMEN Laptop 15-en0xxx) (07-03-2022 21:51:47) Exécuté depuis C:\Users\gaeta\Downloads Profils chargés: gaeta Plate-forme: Microsoft Windows 11 Famille Version 21H2 22000.493 (X64) Langue: Français (France) Navigateur par défaut: Chrome Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (C:\Program Files (x86)\Steam\steamapps\common\wallpaper_engine\bin\wallpaperservice32_c.exe ->) (Skutta, Kristjan -> ) C:\Program Files (x86)\Steam\steamapps\common\wallpaper_engine\wallpaper32.exe (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3> (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (C:\Program Files\SteelSeries\GG\SteelSeriesGG.exe ->) (SteelSeries ApS -> SteelSeries ApS) C:\Program Files\SteelSeries\GG\SteelSeriesEngine.exe (C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_421.20070.95.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\99.0.1150.30\msedgewebview2.exe <6> (C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MpCopyAccelerator.exe (C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Scans\MsMpEngCP.exe (DriverStore\FileRepository\u0356891.inf_amd64_692db74170015dc1\B356757\atiesrxx.exe ->) (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0356891.inf_amd64_692db74170015dc1\B356757\atieclxx.exe (explorer.exe ->) (SteelSeries ApS -> SteelSeries ApS) C:\Program Files\SteelSeries\GG\SteelSeriesGG.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler64.exe (HP Inc.) C:\Program Files\WindowsApps\ad2f1837.hpsystemeventutility_1.2.15.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityHost.exe (HP Inc.) C:\Program Files\WindowsApps\AD2F1837.OMENCommandCenter_1101.2202.4.0_x64__v10z8vjag6ke6\win32\OmenCommandCenterBackground.exe (Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe (RuntimeBroker.exe ->) (McAfee LLC.) C:\Program Files\WindowsApps\5a894077.mcafeesecurity_2.1.68.0_x64__wafk5atnkzcwy\Win32\mcafee-security-ft.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe (services.exe ->) (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0356891.inf_amd64_692db74170015dc1\B356757\atiesrxx.exe (services.exe ->) (DTS, Inc. -> DTS Inc.) C:\Windows\System32\DTS\PC\APO4x\DtsApo4Service.exe (services.exe ->) (Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_54a828a51f6769c8\x64\TouchpointAnalyticsClientService.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_28a78a8b4b54e457\x64\AppHelperCap.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_28a78a8b4b54e457\x64\DiagsCap.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_28a78a8b4b54e457\x64\NetworkCap.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_28a78a8b4b54e457\x64\SysInfoCap.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpomencustomcapcomp.inf_amd64_847b260ab5f9550b\x64\OmenCap\OmenCap.exe (services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_3.62.18001.0_x64__8wekyb3d8bbwe\gamingservices.exe (services.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_3.62.18001.0_x64__8wekyb3d8bbwe\gamingservicesnet.exe (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\NisSrv.exe (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3> (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvhmi.inf_amd64_02942c7e340ddcd3\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_e0ff6fd3f054f0aa\RtkAudUService64.exe <3> (services.exe ->) (Skutta, Kristjan -> ) C:\Program Files (x86)\Steam\steamapps\common\wallpaper_engine\bin\wallpaperservice32_c.exe (services.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnhService.exe (svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe (svchost.exe ->) (McAfee LLC.) C:\Program Files\WindowsApps\5a894077.mcafeesecurity_2.1.68.0_x64__wafk5atnkzcwy\mcafee-security.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20544.0_x64__8wekyb3d8bbwe\HxOutlook.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20544.0_x64__8wekyb3d8bbwe\HxTsr.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\UUS\amd64\MoUsoCoreWorker.exe (svchost.exe ->) (Microsoft Windows) C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_421.20070.95.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe (SynTPEnhService.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnh.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_e0ff6fd3f054f0aa\RtkAudUService64.exe [1257024 2021-04-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [SteelSeriesGG] => C:\Program Files\SteelSeries\GG\SteelSeriesGG.exe [14880592 2022-02-28] (SteelSeries ApS -> SteelSeries ApS) HKU\S-1-5-21-72205973-4196937047-1076969465-1001\...\Run: [HPSEU_Host_Launcher] => C:\System.sav\util\HPSEU\HpseuHostLauncher.exe [525312 2021-08-05] (HP Inc.) [Fichier non signé] HKU\S-1-5-21-72205973-4196937047-1076969465-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [35646080 2022-02-14] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-72205973-4196937047-1076969465-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\lghub.exe [136443968 2022-01-27] (Logitech Inc -> Logitech, Inc.) HKU\S-1-5-21-72205973-4196937047-1076969465-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4268456 2022-01-16] (Valve Corp. -> Valve Corporation) HKU\S-1-5-21-72205973-4196937047-1076969465-1001\...\Run: [Discord] => C:\Users\gaeta\AppData\Local\Discord\Update.exe [1512608 2021-09-21] (Discord Inc. -> GitHub) HKU\S-1-5-21-72205973-4196937047-1076969465-1001\...\Run: [BakkesMod] => C:\Program Files\BakkesMod\BakkesMod.exe [15841792 2022-01-26] () [Fichier non signé] HKU\S-1-5-21-72205973-4196937047-1076969465-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\gaeta\AppData\Local\Microsoft\Teams\Update.exe [2455248 2022-02-07] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\98.0.4758.102\Installer\chrmstp.exe [2022-02-16] (Google LLC -> Google LLC) HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] -> ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {12DF3F8A-9612-48CA-AE38-2818FA70CA73} - \Microsoft\Windows\HelloFace\FODCleanupTask -> Pas de fichier <==== ATTENTION Task: {1CC2FD81-36A2-4EA2-A423-7FEEF2ADCBAA} - System32\Tasks\GoogleUpdateTaskMachineCore{DED77A7E-512A-4EA8-A9D0-9A34758FCA4B} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2022-01-27] (Google LLC -> Google LLC) Task: {322EF930-5CBD-4E19-B735-33A846C6030D} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1656320 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation) Task: {32FE7BC5-E33B-45D6-B92F-59DD2406359E} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [647376 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation) Task: {338E5044-2B73-4C1E-BAA0-0B0068F7153B} - System32\Tasks\HP\Consent Manager Launcher => sc start hptouchpointanalyticsservice Task: {3A16F8ED-BB37-4ADF-A0B5-0B71ABA1F410} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906752 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation) Task: {3E2894C1-23B0-438A-8B75-8E1BCF666227} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPSFReport.exe [136368 2022-02-25] (HP Inc. -> HP Inc.) Task: {433924A9-F0EF-4D97-8D11-BC10D34973F7} - System32\Tasks\Microsoft\Office\Office Serviceability Manager => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\officesvcmgr.exe [4103816 2022-03-04] (Microsoft Corporation -> Microsoft Corporation) Task: {4459E765-D276-445E-ADA2-37A87F944CF7} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1656320 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation) Task: {476020A1-73ED-4E42-BE71-C0E7AD606471} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22580640 2022-03-04] (Microsoft Corporation -> Microsoft Corporation) Task: {49D3E3E0-5BB1-4034-B058-9D45A12B48B4} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-02-14] (Piriform Software Ltd -> Piriform) Task: {4B44C9DB-E4F3-4C7D-91DB-26D6672A1B47} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MpCmdRun.exe [925848 2022-02-08] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {5A634F98-4159-42C7-B5E6-553B43E8D91F} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1656320 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation) Task: {63AC59AF-02B4-4C2D-9136-ECD3ACE0BB4B} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1656320 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation) Task: {6858426B-A4E8-404C-833A-3E6405D71AFA} - \HPAudioSwitch -> Pas de fichier <==== ATTENTION Task: {7B37B26F-CAB9-4B4B-922D-1ADD810B9C72} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [8307120 2022-03-04] (Microsoft Corporation -> Microsoft Corporation) Task: {847FA1C0-6153-4F49-8031-E028E1D34C90} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906752 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation) Task: {90FE46A8-B496-4AD9-BDBA-956C1604FE71} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1009872 2021-11-02] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {A83CF507-1446-4FA2-90B8-2F6B447B0B5B} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Update Notice => C:\Program Files (x86)\HP\HP Support Framework\Resources\BingPopup\BingPopup.exe [314032 2022-02-25] (HP Inc. -> HP Inc.) Task: {BB1BFCB9-E93A-4DFF-B2A9-819292281C63} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [8307120 2022-03-04] (Microsoft Corporation -> Microsoft Corporation) Task: {BED2503A-9B9E-41D7-91A3-31058116805E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MpCmdRun.exe [925848 2022-02-08] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {C8F22F17-1EE4-44EF-910A-7AADE6B20EE1} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [138160 2022-03-04] (Microsoft Corporation -> Microsoft Corporation) Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - \Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser -> Pas de fichier <==== ATTENTION Task: {CE908614-15BA-4D23-934B-0F132D7F2CB7} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424 2021-11-18] (Adobe Inc. -> Adobe Inc.) Task: {D9946CB4-81B3-4A92-A7BB-1664D2437FDB} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3339472 2022-02-03] (Nvidia Corporation -> NVIDIA Corporation) Task: {E0519DF2-6AA3-4779-9A3D-8540E70E2977} - System32\Tasks\CCleanerSkipUAC - gaeta => C:\Program Files\CCleaner\CCleaner.exe [29764224 2022-02-14] (Piriform Software Ltd -> Piriform Software Ltd) Task: {E8981545-D783-45E9-B761-3C9DA87348A2} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [59232 2022-03-04] (Microsoft Corporation -> Microsoft Corporation) Task: {F0BB2CE9-7E69-43DE-BFD1-B6ABD31A310B} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [138160 2022-03-04] (Microsoft Corporation -> Microsoft Corporation) Task: {F1000F17-23E6-4AF5-97F1-C779B4947CE4} - System32\Tasks\GoogleUpdateTaskMachineUA{034B500E-D9F7-4B69-B2CC-FDBC4565E091} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2022-01-27] (Google LLC -> Google LLC) Task: {F111E935-DA99-4EB3-8892-F5B6BA611194} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MpCmdRun.exe [925848 2022-02-08] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {F36ED25F-E95F-42F2-8E09-894CD68E5B30} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22580640 2022-03-04] (Microsoft Corporation -> Microsoft Corporation) Task: {F9BC5F6A-BBF6-4586-8767-4CF1581E4AEB} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MpCmdRun.exe [925848 2022-02-08] (Microsoft Windows Publisher -> Microsoft Corporation) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Hosts: Fichier hosts non détecté dans le dossier par défaut Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{b86ba233-b8a4-4929-90a0-1e1224c4a0e0}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{f25e654b-3336-48c8-a572-df73b71d62da}: [DhcpNameServer] 192.168.1.1 Edge: ======= Edge Profile: C:\Users\gaeta\AppData\Local\Microsoft\Edge\User Data\Default [2022-03-04] FireFox: ======== FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-03-04] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2022-03-04] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-03-04] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-12-24] (Adobe Inc. -> Adobe Systems Inc.) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\gaeta\AppData\Local\Google\Chrome\User Data\Default [2022-03-07] CHR StartupUrls: Default -> "hxxp://www.google.com/" CHR Extension: (Slides) - C:\Users\gaeta\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2022-01-27] CHR Extension: (Docs) - C:\Users\gaeta\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2022-01-27] CHR Extension: (Google Drive) - C:\Users\gaeta\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2022-01-27] CHR Extension: (YouTube) - C:\Users\gaeta\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2022-01-27] CHR Extension: (Sheets) - C:\Users\gaeta\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2022-01-27] CHR Extension: (Google Docs hors connexion) - C:\Users\gaeta\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-02-14] CHR Extension: (AdBlock — le meilleur bloqueur de pubs) - C:\Users\gaeta\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2022-01-27] CHR Extension: (Hoxx VPN Proxy) - C:\Users\gaeta\AppData\Local\Google\Chrome\User Data\Default\Extensions\nbcojefnccbanplpoffopkoepjmhgdgh [2022-01-27] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\gaeta\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-01-27] CHR Extension: (Gmail) - C:\Users\gaeta\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2022-01-27] CHR Profile: C:\Users\gaeta\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-03-07] CHR Profile: C:\Users\gaeta\AppData\Local\Google\Chrome\User Data\Profile 1 [2022-03-03] CHR Extension: (Slides) - C:\Users\gaeta\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2022-01-27] CHR Extension: (Docs) - C:\Users\gaeta\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2022-01-27] CHR Extension: (Google Drive) - C:\Users\gaeta\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2022-01-27] CHR Extension: (YouTube) - C:\Users\gaeta\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2022-01-27] CHR Extension: (Sheets) - C:\Users\gaeta\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2022-01-27] CHR Extension: (Google Docs hors connexion) - C:\Users\gaeta\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-02-28] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\gaeta\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-01-27] CHR Extension: (Gmail) - C:\Users\gaeta\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2022-01-27] CHR Profile: C:\Users\gaeta\AppData\Local\Google\Chrome\User Data\System Profile [2022-03-07] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-11-18] (Adobe Inc. -> Adobe Inc.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11649952 2022-03-04] (Microsoft Corporation -> Microsoft Corporation) R2 DtsApo4Service; C:\WINDOWS\System32\DTS\PC\APO4x\DtsApo4Service.exe [224680 2021-09-22] (DTS, Inc. -> DTS Inc.) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [813032 2021-12-07] (EasyAntiCheat Oy -> Epic Games, Inc) S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [934368 2021-10-01] (Epic Games Inc. -> Epic Games, Inc.) R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [905080 2020-03-18] (HP Inc. -> HP Inc.) R2 HPAppHelperCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_28a78a8b4b54e457\x64\AppHelperCap.exe [762920 2022-01-19] (HP Inc. -> HP Inc.) R2 HPDiagsCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_28a78a8b4b54e457\x64\DiagsCap.exe [759800 2022-01-19] (HP Inc. -> HP Inc.) R2 HPNetworkCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_28a78a8b4b54e457\x64\NetworkCap.exe [756736 2022-01-19] (HP Inc. -> HP Inc.) R2 HPOmenCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpomencustomcapcomp.inf_amd64_847b260ab5f9550b\x64\OmenCap\OmenCap.exe [690168 2021-10-21] (HP Inc. -> HP Inc.) R2 HPSysInfoCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_28a78a8b4b54e457\x64\SysInfoCap.exe [760304 2022-01-19] (HP Inc. -> HP Inc.) R2 HpTouchpointAnalyticsService; C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_54a828a51f6769c8\x64\TouchpointAnalyticsClientService.exe [494672 2021-11-21] (HP Inc. -> HP Inc.) R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [11067456 2022-01-27] (Logitech Inc -> Logitech, Inc.) S3 OfficeSvcManagerAddons; C:\WINDOWS\system32\dllhost.exe /Processid:{2CA2E202-932F-4BA2-8771-195BB86398F5} [45368 2021-06-05] (Microsoft Windows -> Microsoft Corporation) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2563288 2022-02-22] (Electronic Arts, Inc. -> Electronic Arts) R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3481824 2022-02-22] (Electronic Arts, Inc. -> Electronic Arts) S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [2559896 2022-02-25] (Rockstar Games, Inc. -> Rockstar Games) S3 ss_conn_launcher_service; C:\WINDOWS\System32\Samsung\EasySetup\ss_conn_launcher.exe [182392 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 SteelSeriesUpdateService; C:\Program Files\SteelSeries\GG\SteelSeriesUpdateService.exe [31568 2022-02-28] (SteelSeries ApS -> ) R2 Wallpaper Engine Service; C:\Program Files (x86)\Steam\steamapps\common\wallpaper_engine\bin\wallpaperservice32_c.exe [129696 2022-01-28] (Skutta, Kristjan -> ) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\NisSrv.exe [2909208 2022-02-08] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2201.10-0\MsMpEng.exe [128376 2022-02-08] (Microsoft Windows Publisher -> Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvhmi.inf_amd64_02942c7e340ddcd3\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvhmi.inf_amd64_02942c7e340ddcd3\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R3 AMDAfdAudioService; C:\WINDOWS\System32\DriverStore\FileRepository\amdacpafd.inf_amd64_e1d934643f1d3ef6\amdacpafd.sys [361936 2022-02-09] (Advanced Micro Devices Inc. -> Advanced Micro Devices) R3 amdfendrmgr; C:\WINDOWS\System32\drivers\amdfendrmgr.sys [33216 2021-12-02] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) R3 AMDXE; C:\WINDOWS\System32\drivers\amdxe.sys [65168 2021-08-17] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) S3 dg_ssudbus; C:\WINDOWS\System32\drivers\ssudbus2.sys [160376 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R3 GlPciSD; C:\WINDOWS\System32\drivers\GlPciSD.sys [220360 2021-11-18] (GENESYS LOGIC, INC. -> Genesys Logic) R3 HPCustomCapDriver; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_a955fa431e522f5e\x64\hpcustomcapdriver.sys [25592 2021-09-16] (HP Inc. -> HP Inc.) R3 HPOmenCustomCapDriver; C:\WINDOWS\System32\DriverStore\FileRepository\hpomencustomcapdriver.inf_amd64_326f2e1d16385daf\x64\hpomencustomcapdriver.sys [23888 2020-04-21] (HP Inc. -> HP Inc.) R2 HpReadHWData; C:\WINDOWS\system32\drivers\HpReadHWData.sys [47184 2021-12-09] (HP Inc. -> Windows (R) Win 7 DDK provider) S3 Hsp; C:\WINDOWS\System32\drivers\Hsp.sys [110904 2022-02-06] (Microsoft Windows -> Microsoft Corporation) S3 logi_generic_hid_filter; C:\WINDOWS\system32\drivers\logi_generic_hid_filter.sys [55624 2021-12-08] (Logitech Inc -> Logitech) R3 logi_joy_bus_enum; C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys [37200 2021-12-08] (Logitech Inc -> Logitech) S3 logi_joy_hid_filter; C:\WINDOWS\system32\drivers\logi_joy_hid_filter.sys [56656 2021-12-08] (Logitech Inc -> Logitech) S3 logi_joy_hid_lo; C:\WINDOWS\system32\drivers\logi_joy_hid_lo.sys [45904 2021-12-08] (Logitech Inc -> Logitech) S3 logi_joy_vir_hid; C:\WINDOWS\system32\drivers\logi_joy_vir_hid.sys [25928 2021-12-08] (Logitech Inc -> Logitech) R3 logi_joy_xlcore; C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys [66896 2021-12-08] (Logitech Inc -> Logitech) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [48552 2021-11-01] (Microsoft Windows Hardware Compatibility Publisher -> NVIDIA Corporation) R1 rtf64; C:\WINDOWS\system32\DRIVERS\rtf64x64.sys [62352 2021-09-13] (Realtek Semiconductor Corp. -> Realtek) S3 ssbthid; C:\WINDOWS\System32\drivers\ssbthid.sys [44688 2021-09-03] (SteelSeries ApS -> SteelSeries ApS) R3 ssdevfactory; C:\WINDOWS\System32\drivers\ssdevfactory.sys [47784 2021-12-06] (SteelSeries ApS -> SteelSeries ApS) S3 sshid; C:\WINDOWS\System32\drivers\sshid.sys [47760 2021-09-03] (SteelSeries ApS -> SteelSeries ApS) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167280 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 ssudqcfilter; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [65144 2021-10-08] (Samsung Electronics Co., Ltd. -> QUALCOMM Incorporated) S3 ss_conn_usb_driver2; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver2.sys [43640 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R3 SteelSeries_Sonar_VAD; C:\WINDOWS\System32\DriverStore\FileRepository\steelseries-sonar-vad.inf_amd64_689082cfb8a03f07\SteelSeries-Sonar-VAD.sys [80200 2022-01-06] (SteelSeries ApS -> Windows (R) Win 7 DDK provider) R3 ViGEmBus; C:\WINDOWS\System32\DriverStore\FileRepository\vigembus.inf_amd64_8a927fc43d8a7838\x64\ViGEmBus.sys [91432 2020-04-21] (HP Inc. -> Benjamin Hoeglinger-Stelzer) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [48536 2022-02-08] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [438520 2022-02-08] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [90360 2022-02-08] (Microsoft Windows -> Microsoft Corporation) U3 aspnet_state; pas de ImagePath S3 MpKsl0351c12d; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2413AE41-430A-4F91-9EDE-692F4307711C}\MpKslDrv.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-03-07 21:51 - 2022-03-07 21:52 - 000031416 _____ C:\Users\gaeta\Downloads\FRST.txt 2022-03-07 21:51 - 2022-03-07 21:52 - 000000000 ____D C:\FRST 2022-03-07 21:51 - 2022-03-07 21:51 - 002312192 _____ (Farbar) C:\Users\gaeta\Downloads\FRST64.exe 2022-02-26 13:51 - 2022-02-26 13:51 - 000000000 ____D C:\WINDOWS\system32\SteelSeries 2022-02-26 13:28 - 2022-02-10 07:18 - 000040920 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhdap64.dll 2022-02-26 13:26 - 2022-02-10 19:42 - 001905936 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2022-02-26 13:26 - 2022-02-10 19:42 - 001905936 _____ C:\WINDOWS\system32\vulkaninfo.exe 2022-02-26 13:26 - 2022-02-10 19:42 - 001478416 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2022-02-26 13:26 - 2022-02-10 19:42 - 001478416 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2022-02-26 13:26 - 2022-02-10 19:42 - 001467840 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2022-02-26 13:26 - 2022-02-10 19:42 - 001432336 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2022-02-26 13:26 - 2022-02-10 19:42 - 001432336 _____ C:\WINDOWS\system32\vulkan-1.dll 2022-02-26 13:26 - 2022-02-10 19:42 - 001209280 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2022-02-26 13:26 - 2022-02-10 19:42 - 001145616 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2022-02-26 13:26 - 2022-02-10 19:42 - 001145616 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2022-02-26 13:26 - 2022-02-10 19:39 - 042298024 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys 2022-02-26 13:26 - 2022-02-10 19:39 - 001531872 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2022-02-26 13:26 - 2022-02-10 19:39 - 001176704 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2022-02-26 13:26 - 2022-02-10 19:39 - 000797112 _____ C:\WINDOWS\system32\nvofapi64.dll 2022-02-26 13:26 - 2022-02-10 19:39 - 000717760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll 2022-02-26 13:26 - 2022-02-10 19:39 - 000636032 _____ C:\WINDOWS\SysWOW64\nvofapi.dll 2022-02-26 13:26 - 2022-02-10 19:38 - 001602728 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2022-02-26 13:26 - 2022-02-10 19:38 - 000983992 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2022-02-26 13:26 - 2022-02-10 19:38 - 000795584 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2022-02-26 13:26 - 2022-02-10 19:38 - 000711608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe 2022-02-26 13:26 - 2022-02-10 19:37 - 008612496 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2022-02-26 13:26 - 2022-02-10 19:37 - 007714960 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2022-02-26 13:26 - 2022-02-10 19:37 - 005727376 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2022-02-26 13:26 - 2022-02-10 19:37 - 005099152 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2022-02-26 13:26 - 2022-02-10 19:37 - 002935744 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2022-02-26 13:26 - 2022-02-10 19:37 - 000456848 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe 2022-02-26 13:26 - 2022-02-10 19:35 - 000849024 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe 2022-02-26 13:26 - 2022-02-10 19:34 - 006461040 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2022-02-26 13:26 - 2022-02-10 07:18 - 000089251 _____ C:\WINDOWS\system32\nvinfo.pb 2022-02-17 21:57 - 2022-02-17 21:57 - 000000000 ___HD C:\$WinREAgent 2022-02-17 20:19 - 2022-02-17 20:19 - 000000000 ____D C:\Users\gaeta\AppData\Local\NiyaShy 2022-02-17 20:05 - 2022-02-17 20:05 - 000001082 _____ C:\Users\gaeta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\XB1ControllerBatteryIndicator.lnk 2022-02-12 20:29 - 2022-02-12 20:29 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf 2022-02-10 20:01 - 2022-02-10 20:01 - 000015020 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2022-02-09 20:32 - 2022-02-10 14:05 - 000000000 ____D C:\Program Files\Microsoft OneDrive 2022-02-07 18:06 - 2022-02-07 18:06 - 000002371 _____ C:\Users\gaeta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk 2022-02-07 18:06 - 2022-02-07 18:06 - 000000000 ____D C:\Users\gaeta\AppData\Roaming\Teams 2022-02-07 18:03 - 2022-02-07 18:03 - 000002553 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype Entreprise.lnk 2022-02-07 18:03 - 2022-02-07 18:03 - 000000000 ___RD C:\Users\Default\OneDrive 2022-02-07 18:03 - 2022-02-07 18:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office 2022-02-07 18:03 - 2022-02-07 18:03 - 000000000 ____D C:\Program Files (x86)\Teams Installer 2022-02-06 11:18 - 2022-02-06 11:18 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient 2022-02-06 11:10 - 2022-02-06 11:10 - 000339968 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll 2022-02-06 11:10 - 2022-02-06 11:10 - 000311296 _____ C:\WINDOWS\system32\EsclScan.dll 2022-02-06 11:10 - 2022-02-06 11:10 - 000188416 _____ C:\WINDOWS\system32\EsclProtocol.dll 2022-02-06 11:10 - 2022-02-06 11:10 - 000077824 _____ C:\WINDOWS\system32\APMonUI.dll 2022-02-05 13:16 - 2022-02-05 13:16 - 000001924 _____ C:\Users\gaeta\Desktop\Rockstar Games Launcher.lnk 2022-02-05 13:15 - 2022-02-05 13:17 - 000000000 ____D C:\Program Files\Rockstar Games 2022-02-05 13:15 - 2022-02-05 13:17 - 000000000 ____D C:\Program Files (x86)\Rockstar Games ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-03-07 21:50 - 2022-01-27 18:45 - 000000000 ____D C:\Users\gaeta\AppData\Roaming\Origin 2022-03-07 21:50 - 2022-01-27 18:45 - 000000000 ____D C:\ProgramData\Origin 2022-03-07 21:15 - 2022-01-27 18:44 - 000000000 ____D C:\Users\gaeta\AppData\Roaming\discord 2022-03-07 21:02 - 2022-01-27 18:44 - 000000000 ____D C:\Users\gaeta\AppData\Local\Discord 2022-03-07 21:01 - 2022-01-27 17:56 - 000000000 ____D C:\Program Files (x86)\Google 2022-03-07 20:36 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\AppReadiness 2022-03-07 20:20 - 2022-01-27 18:45 - 000000000 ____D C:\Users\gaeta\AppData\Local\Origin 2022-03-07 20:20 - 2022-01-27 17:31 - 000000000 ____D C:\ProgramData\NVIDIA 2022-03-07 20:20 - 2021-06-05 13:10 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-03-07 20:09 - 2022-01-27 17:52 - 001825220 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2022-03-07 20:09 - 2021-06-05 19:14 - 000807760 _____ C:\WINDOWS\system32\perfh00C.dat 2022-03-07 20:09 - 2021-06-05 19:14 - 000156382 _____ C:\WINDOWS\system32\perfc00C.dat 2022-03-07 20:09 - 2021-06-05 13:09 - 000000000 ____D C:\WINDOWS\INF 2022-03-07 20:04 - 2022-01-27 18:06 - 000000000 ____D C:\Program Files\CCleaner 2022-03-07 20:02 - 2022-01-27 17:47 - 000000000 ____D C:\Users\gaeta\AppData\Local\D3DSCache 2022-03-07 20:02 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SystemTemp 2022-03-07 20:01 - 2022-01-27 17:31 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2022-03-07 20:01 - 2022-01-27 17:31 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2022-03-07 20:01 - 2022-01-25 20:54 - 000012288 ___SH C:\DumpStack.log.tmp 2022-03-07 19:36 - 2022-01-27 18:47 - 000000000 ____D C:\Program Files (x86)\Origin 2022-03-07 19:09 - 2022-01-27 17:39 - 000000000 ____D C:\Users\gaeta 2022-03-07 19:09 - 2021-06-05 13:01 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2022-03-07 17:05 - 2022-01-31 21:37 - 000000000 ____D C:\Users\gaeta\AppData\Local\CrashDumps 2022-03-06 21:21 - 2021-06-05 13:01 - 000000000 ____D C:\WINDOWS\CbsTemp 2022-03-06 21:15 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\Registration 2022-03-06 08:09 - 2021-06-05 13:10 - 000000000 ___HD C:\Program Files\WindowsApps 2022-03-05 22:19 - 2022-01-27 17:31 - 000002451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-03-04 17:49 - 2020-06-24 07:56 - 000000000 ____D C:\Program Files\Microsoft Office 2022-03-03 20:44 - 2022-01-27 17:47 - 000000000 ____D C:\Users\gaeta\AppData\Local\NVIDIA Corporation 2022-03-03 19:51 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2022-03-01 19:32 - 2022-01-27 18:17 - 000000000 ____D C:\ProgramData\SteelSeries 2022-03-01 15:02 - 2022-01-27 18:31 - 000000000 ____D C:\Program Files (x86)\Steam 2022-02-27 20:36 - 2021-09-20 17:47 - 000002016 _____ C:\Users\gaeta\Desktop\pw.txt 2022-02-27 19:10 - 2022-01-27 18:06 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2022-02-26 13:30 - 2022-01-27 17:55 - 000000000 ____D C:\Users\gaeta\AppData\Local\NVIDIA 2022-02-26 13:28 - 2022-01-27 17:31 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2022-02-26 13:21 - 2022-01-31 21:34 - 000003976 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-02-26 13:21 - 2022-01-31 21:34 - 000003940 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-02-26 13:20 - 2022-01-31 21:34 - 000004308 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-02-26 13:20 - 2022-01-31 21:34 - 000003894 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-02-26 13:20 - 2022-01-31 21:34 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-02-26 13:20 - 2022-01-31 21:34 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-02-26 13:20 - 2022-01-31 21:34 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-02-26 13:20 - 2022-01-31 21:34 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-02-26 13:20 - 2022-01-31 21:34 - 000003654 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-02-26 13:20 - 2020-12-08 12:07 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2022-02-26 13:20 - 2020-12-08 12:06 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2022-02-25 11:41 - 2022-01-27 18:01 - 002236864 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll 2022-02-25 11:41 - 2022-01-27 18:01 - 000337360 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll 2022-02-25 11:41 - 2022-01-27 18:01 - 000218576 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy.dll 2022-02-25 11:41 - 2022-01-27 18:01 - 000198120 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll 2022-02-25 11:41 - 2022-01-27 18:01 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll 2022-02-25 11:41 - 2022-01-27 18:01 - 000119232 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll 2022-02-25 11:41 - 2022-01-27 18:01 - 000062928 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamemodcontrol.exe 2022-02-21 14:59 - 2020-12-08 12:07 - 000000000 ____D C:\ProgramData\Package Cache 2022-02-19 22:39 - 2022-01-29 18:47 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2022-02-17 19:54 - 2022-01-27 18:44 - 000002234 _____ C:\Users\gaeta\Desktop\Discord.lnk 2022-02-16 21:26 - 2022-01-29 17:05 - 000000000 ____D C:\Users\gaeta\AppData\Roaming\.minecraft 2022-02-16 20:29 - 2022-01-27 17:57 - 000002252 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2022-02-14 11:17 - 2022-01-27 17:39 - 000000000 ____D C:\Users\gaeta\AppData\Local\Packages 2022-02-10 20:22 - 2022-01-27 17:31 - 000589128 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2022-02-10 20:22 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SystemResources 2022-02-10 20:22 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\bcastdvr 2022-02-10 20:03 - 2022-01-29 18:46 - 000000000 ____D C:\WINDOWS\system32\MRT 2022-02-10 20:02 - 2022-01-29 18:46 - 149611728 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2022-02-10 19:38 - 2022-01-11 09:47 - 002120320 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2022-02-10 19:34 - 2022-01-11 09:44 - 007613344 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2022-02-10 07:18 - 2021-12-29 17:28 - 000127968 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys 2022-02-09 20:54 - 2021-10-01 08:13 - 000000000 ____D C:\Users\gaeta\OneDrive\Documents\FIFA 22 2022-02-09 20:41 - 2021-05-20 12:44 - 000000000 ___RD C:\Users\gaeta\OneDrive 2022-02-09 20:34 - 2020-12-08 12:05 - 000000000 ____D C:\ProgramData\Packages 2022-02-08 18:00 - 2022-01-27 17:31 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2022-02-07 18:13 - 2022-01-27 20:15 - 000000000 ___HD C:\Program Files\Common Files\EAInstaller 2022-02-07 18:13 - 2021-09-21 19:46 - 000000879 _____ C:\Users\Public\Desktop\Battlefield™ V.lnk 2022-02-07 18:10 - 2022-01-27 17:43 - 000000000 ____D C:\WINDOWS\Minidump 2022-02-07 18:06 - 2022-01-27 18:44 - 000000000 ____D C:\Users\gaeta\AppData\Local\SquirrelTemp 2022-02-07 18:03 - 2020-06-24 07:57 - 000002479 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk 2022-02-07 18:03 - 2020-06-24 07:57 - 000002479 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk 2022-02-07 18:03 - 2020-06-24 07:57 - 000002462 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk 2022-02-07 18:03 - 2020-06-24 07:57 - 000002452 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk 2022-02-07 18:03 - 2020-06-24 07:57 - 000002452 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk 2022-02-07 18:03 - 2020-06-24 07:57 - 000002440 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk 2022-02-07 18:03 - 2020-06-24 07:57 - 000002402 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk 2022-02-07 17:51 - 2021-11-14 20:19 - 000000000 ____D C:\swsetup 2022-02-06 11:18 - 2021-06-05 13:10 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2022-02-06 11:18 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2022-02-06 11:18 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\Dism 2022-02-06 11:18 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\appraiser 2022-02-06 11:18 - 2021-06-05 13:01 - 000000000 ____D C:\WINDOWS\servicing 2022-02-06 11:10 - 2022-01-27 17:33 - 003087360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2022-02-05 13:16 - 2022-01-28 22:14 - 000000000 ____D C:\Users\gaeta\AppData\Local\Rockstar Games 2022-02-05 13:16 - 2021-05-22 08:21 - 000000000 ____D C:\Users\gaeta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rockstar Games 2022-02-05 13:11 - 2020-12-08 12:15 - 000000000 ____D C:\ProgramData\McAfee ==================== Fichiers à la racine de certains dossiers ======== 2022-02-03 14:07 - 2022-02-03 14:07 - 000000000 _____ () C:\Users\gaeta\AppData\Local\{48309589-C854-4058-A73F-476738EAFECD} ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================