Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 13-03-2022 Exécuté par Sahrane (administrateur) sur SAHRANE-PC (Packard Bell EasyNote TE11HC) (19-03-2022 10:47:31) Exécuté depuis C:\Users\Sahrane\Desktop Profils chargés: Sahrane Plate-forme: Microsoft Windows 7 Édition Familiale Premium Service Pack 1 (X64) Langue: Français (France) Navigateur par défaut: Chrome Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ->) (Adobe Systems Incorporated -> ) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe (C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ->) (Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe (C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ->) (Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\CEPServiceManager4\CEPServiceManager.exe (C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Cloud 21.3\avp.exe ->) (Kaspersky Lab JSC -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Cloud 21.3\avpui.exe (C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.3\ksde.exe ->) (Kaspersky Lab JSC -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.3\ksdeui.exe (C:\Program Files (x86)\Launch Manager\dsiwmis.exe ->) (Dritek System Inc. -> Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe (C:\Program Files (x86)\Launch Manager\dsiwmis.exe ->) (Dritek System Inc. -> Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMworker.exe (C:\Program Files (x86)\Launch Manager\LManager.exe ->) (Dritek System Inc. -> Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe (C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRYSVC.EXE ->) (Broadcom Corporation) [Fichier non signé] C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\BCMWLTRY.EXE (C:\Program Files\Elantech\ETDCtrl.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe (Dritek System Inc. -> Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe (explorer.exe ->) (Broadcom Corporation) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.EXE (explorer.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <12> (explorer.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\hkcmd.exe (explorer.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxpers.exe (explorer.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxtray.exe (explorer.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler64.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\msiexec.exe (Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe (rundll32.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe <6> (services.exe ->) () [Fichier non signé] C:\Program Files (x86)\Tor\tor.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (Broadcom Corporation) [Fichier non signé] C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRYSVC.EXE (services.exe ->) (Canon Inc. -> ) C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe (services.exe ->) (Dritek System Inc. -> Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe (services.exe ->) (eVenture Limited -> eVenture Limited) C:\Program Files (x86)\hide.me VPN\hidemesvc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (services.exe ->) (Intel® Upgrade Service -> Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (services.exe ->) (INTERNET PROJECT LLC -> Ellora Assets Corp.) C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe (services.exe ->) (Kaspersky Lab JSC -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Cloud 21.3\avp.exe (services.exe ->) (Kaspersky Lab JSC -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.3\ksde.exe (svchost.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxext.exe (svchost.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxsrvc.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (taskeng.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12343400 2011-12-27] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2821936 2012-03-07] (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) HKLM\...\Run: [Broadcom Wireless Manager UI] => C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.exe [7138816 2012-06-08] (Broadcom Corporation) [Fichier non signé] [Fichier en cours d'utilisation] HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [472984 2013-06-13] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM-x32\...\Run: [LManager] => C:\Program Files (x86)\Launch Manager\LManager.exe [1105488 2012-03-23] (Dritek System Inc. -> Dritek System Inc.) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2237328 2013-09-03] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM-x32\...\Run: [IJNetworkScannerSelectorEX2] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe [270912 2015-06-17] (Canon Inc. -> CANON INC.) HKU\S-1-5-21-1044475627-2638818009-2120378831-1000\...\Run: [EPLTarget\P0000000000000000] => C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIPEE.EXE [417776 2014-11-14] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) HKU\S-1-5-21-1044475627-2638818009-2120378831-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [35888256 2022-03-10] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-1044475627-2638818009-2120378831-1000\...\Run: [CyberGhost] => "C:\Program Files\CyberGhost 6\CyberGhost.exe" /autostart /min (Pas de fichier) HKU\S-1-5-21-1044475627-2638818009-2120378831-1000\...\Run: [msdwf] => C:\Users\Sahrane\AppData\Roaming\msdwf.exe [135680 2022-03-12] () [Fichier non signé] HKU\S-1-5-21-1044475627-2638818009-2120378831-1000\...\RunOnce: [Uninstall C:\Users\Sahrane\AppData\Local\Microsoft\SkyDrive\16.4.6003.0710\amd64] => C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Sahrane\AppData\Local\Microsoft\SkyDrive\16.4.6003.0710\amd64" HKLM\...\Windows x64\Print Processors\Canon MP140 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPD8R.DLL [27136 2006-12-25] (CANON INC.) [Fichier non signé] HKLM\...\Windows x64\Print Processors\Canon TS5000 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDDF.DLL [30720 2017-12-18] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJ Language Monitor MP140 series: C:\Windows\system32\CNMLM8R.DLL [236544 2006-12-25] (CANON INC.) [Fichier non signé] HKLM\...\Print\Monitors\Canon BJ Language Monitor TS5000 series: C:\Windows\system32\CNMLMDF.DLL [485376 2017-12-18] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJ Language Monitor TS5000 series XPS: C:\Windows\system32\CNMXLMDF.DLL [487424 2017-12-18] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\99.0.4844.74\Installer\chrmstp.exe [2022-03-16] (Google LLC -> Google LLC) HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache HKLM\Software\...\Authentication\Credential Providers: [{F8A0B131-5F68-486c-8040-7E8FC3C85BB6}] -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDCREDPROV.DLL [2011-03-29] (Microsoft Corporation -> Microsoft Corp.) ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {2AAEE3CB-322E-4616-B1F6-62E871628508} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1044475627-2638818009-2120378831-1000 => C:\Users\Sahrane\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe (Pas de fichier) Task: {2FB3943B-7F1D-4650-B701-A4BBAEF6ABAD} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424 2021-11-17] (Adobe Inc. -> Adobe Inc.) Task: {466E26ED-15C7-46C8-BA16-3091D4BB3DAD} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-11-12] (Google Inc -> Google Inc.) Task: {49856C83-82DF-47E2-A3FC-DC21AFFC2EDB} - System32\Tasks\CCleanerSkipUAC - Sahrane => C:\Program Files\CCleaner\CCleaner.exe [30053504 2022-03-10] (Piriform Software Ltd -> Piriform Software Ltd) Task: {4CDF33B6-EED4-4708-8C60-B103B12A15B6} - System32\Tasks\{091B2E6D-D6D5-4C39-87B2-56ABC6C07B1D} => C:\Program Files (x86)\VideoLAN\VLC\vlc.exe [126464 2013-09-23] (VideoLAN) [Fichier non signé] Task: {51890DA6-D964-4ED0-98B0-A5F667CC8AF5} - System32\Tasks\Microsoft\Windows\RemoteApp and Desktop Connections Update\Systemcnt => rundll32 C:\ProgramData\LessObject\AcgiveWhckage\kpey_2_0_m60.dll WHHOM_Szrvsshi Task: {610E6811-1325-49AC-B522-44B5E92E4913} - System32\Tasks\Intel Rapid => C:\Users\Sahrane\AppData\Roaming\Intel Rapid\IntelRapid.exe (Pas de fichier) Task: {6F659AC9-7030-4944-80C9-517EE402B326} - System32\Tasks\AdobeAAMUpdater-1.0-Sahrane-PC-Sahrane => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [472984 2013-06-13] (Adobe Systems Incorporated -> Adobe Systems Incorporated) Task: {84E14D44-AC7A-4287-A1E0-B218142C529F} - System32\Tasks\{F3AE58DF-608D-4F01-BCA6-71B4D9095A7C} => C:\Program Files (x86)\VideoLAN\VLC\vlc.exe [126464 2013-09-23] (VideoLAN) [Fichier non signé] Task: {8AFF4FBB-0421-456B-B009-0B5BFCFA682B} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-11-12] (Google Inc -> Google Inc.) Task: {B000A1C4-465D-4719-97DF-452659B1ED93} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} Task: {BF5EF951-90EA-4EF3-B6B1-BA56E0E2332A} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-03-10] (Piriform Software Ltd -> Piriform) Task: {D4394F24-4A26-42CD-B39D-B6912CC0A21B} - System32\Tasks\{6833EB87-419B-4E9F-8426-3814962423E3} => C:\Program Files (x86)\VideoLAN\VLC\vlc.exe [126464 2013-09-23] (VideoLAN) [Fichier non signé] Task: {EABF7798-8B73-4324-B121-A0EC28594257} - System32\Tasks\NBAgent => C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe /WinStart (Pas de fichier) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\Windows\Tasks\EPSON XP-332 335 Series Update {40F24142-20B7-4483-8C54-061459030EC1}.job => C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSPEE.EXE:/EXE:{40F24142-20B7-4483-8C54-061459030EC1} /F:UpdateSystèmeĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) ProxyServer: [S-1-5-21-1044475627-2638818009-2120378831-1000] => 127.0.0.1:17792 Winsock: Catalog5 07 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280 2011-03-29] (Microsoft Corporation -> Microsoft Corp.) Winsock: Catalog5 08 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280 2011-03-29] (Microsoft Corporation -> Microsoft Corp.) Winsock: Catalog5-x64 07 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [171392 2011-03-29] (Microsoft Corporation -> Microsoft Corp.) Winsock: Catalog5-x64 08 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [171392 2011-03-29] (Microsoft Corporation -> Microsoft Corp.) Tcpip\Parameters: [DhcpNameServer] 89.2.0.1 89.2.0.2 Tcpip\..\Interfaces\{23EE4819-8129-4E58-85A6-46683897E04F}: [NameServer] 10.132.216.1 Tcpip\..\Interfaces\{7DCB0293-15FC-4878-82D6-63BE7DDF5673}: [NameServer] 10.133.200.1 Tcpip\..\Interfaces\{A6B32094-FB6D-4F9C-A01E-C6BE91995F71}: [NameServer] 8.8.8.8,8.8.4.4 Tcpip\..\Interfaces\{A6B32094-FB6D-4F9C-A01E-C6BE91995F71}: [DhcpNameServer] 89.2.0.1 89.2.0.2 Tcpip\..\Interfaces\{D85942BA-6320-419A-AFDB-3C21BC2666BC}: [DhcpNameServer] 192.168.1.250 FireFox: ======== FF DefaultProfile: jg5574ar.default FF ProfilePath: C:\Users\Sahrane\AppData\Roaming\Mozilla\Firefox\Profiles\jg5574ar.default [2022-03-19] FF HKLM\...\Firefox\Extensions: [light_plugin_7571494CE0B94E11BB762B659A4AD71F@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Cloud 21.3\FFExt\light_plugin_firefox\addon.xpi => non trouvé(e) FF HKLM-x32\...\Firefox\Extensions: [light_plugin_7571494CE0B94E11BB762B659A4AD71F@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Cloud 21.3\FFExt\light_plugin_firefox\addon.xpi => non trouvé(e) FF Plugin: @microsoft.com/GENUINE -> disabled [Pas de fichier] FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2013-09-03] (Adobe Systems Incorporated -> Adobe Systems) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-01-06] (Intel® Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-01-06] (Intel® Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Pas de fichier] FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2011-05-13] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2011-05-13] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-12-24] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2013-09-03] (Adobe Systems Incorporated -> Adobe Systems) Chrome: ======= CHR Profile: C:\Users\Sahrane\AppData\Local\Google\Chrome\User Data\Default [2022-03-19] CHR HomePage: Default -> hxxp://www.google.fr/ CHR Extension: (Kaspersky Protection) - C:\Users\Sahrane\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahkjpbeeocnddjkakilopmfdlnjdpcdm [2021-12-26] CHR Extension: (Pixiv Toolkit) - C:\Users\Sahrane\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajlcnbbeidbackfknkgknjefhmbngdnj [2022-03-08] CHR Extension: (Tampermonkey) - C:\Users\Sahrane\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2022-01-29] CHR Extension: (AdBlock — le meilleur bloqueur de pubs) - C:\Users\Sahrane\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2022-03-08] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Sahrane\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-03-22] CHR Extension: (hide.me Proxy) - C:\Users\Sahrane\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohjocgmpmlfahafbipehkhbaacoemojp [2022-02-09] CHR HKLM\...\Chrome\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] - hxxps://chrome.google.com/webstore/detail/kaspersky-protection/ahkjpbeeocnddjkakilopmfdlnjdpcdm CHR HKLM-x32\...\Chrome\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] - hxxps://chrome.google.com/webstore/detail/kaspersky-protection/ahkjpbeeocnddjkakilopmfdlnjdpcdm Brave: ======= BRA Profile: C:\Users\Sahrane\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2022-03-19] BRA Extension: (Brave Tracking Protection Updater) - C:\Users\Sahrane\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2018-12-25] BRA Extension: (Brave Ad Block Updater (Default)) - C:\Users\Sahrane\AppData\Local\BraveSoftware\Brave-Browser\User Data\cffkpbalmllkdoenhmdmpbkajipdjfam [2018-12-25] BRA Extension: (Brave Tor Client Updater (Windows)) - C:\Users\Sahrane\AppData\Local\BraveSoftware\Brave-Browser\User Data\cpoalefficncklhjfpglfiplenlpccdb [2018-12-25] BRA Extension: (PDF Viewer) - C:\Users\Sahrane\AppData\Local\BraveSoftware\Brave-Browser\User Data\oemmndcbldboiebfnladdacbdfmadadm [2018-12-25] BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\Sahrane\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2018-12-25] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-11-17] (Adobe Inc. -> Adobe Inc.) R2 AVP21.3; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Cloud 21.3\avp.exe [184768 2021-08-10] (Kaspersky Lab JSC -> AO Kaspersky Lab) S4 clr_optimization_v2.0.50727_64; C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe [90776 2014-03-20] (Microsoft Corporation -> Microsoft Corporation) S2 clr_optimization_v4.0.30319_64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [158912 2019-03-28] (Microsoft Dynamic Code Publisher -> Microsoft Corporation) R2 FreemakeVideoCapture; C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe [15856 2019-07-10] (INTERNET PROJECT LLC -> Ellora Assets Corp.) R2 hmevpnsvc; C:\Program Files (x86)\hide.me VPN\hidemesvc.exe [172880 2022-01-30] (eVenture Limited -> eVenture Limited) R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [398784 2019-04-22] (Canon Inc. -> ) S3 klvssbridge64_21.3; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Cloud 21.3\x64\vssbridge64.exe [479280 2021-02-19] (Kaspersky Lab JSC -> AO Kaspersky Lab) R2 KSDE5.3; C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.3\ksde.exe [447104 2021-06-10] (Kaspersky Lab JSC -> AO Kaspersky Lab) R2 tor; C:\Program Files (x86)\Tor\tor.exe [3233806 2013-09-01] () [Fichier non signé] S3 wlidsvc; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2292096 2011-03-29] (Microsoft Corporation -> Microsoft Corp.) R2 wltrysvc; C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\bcmwltry.exe [5824512 2012-06-08] (Broadcom Corporation) [Fichier non signé] ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R0 cm_km; C:\Windows\System32\DRIVERS\cm_km.sys [78560 2022-02-10] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 hideFirewall; C:\Windows\System32\drivers\hideFirewall.sys [100352 2021-10-28] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [644320 2022-02-10] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 klbackupdisk; C:\Windows\System32\DRIVERS\klbackupdisk.sys [78560 2022-02-10] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 klbackupflt; C:\Windows\System32\DRIVERS\klbackupflt.sys [78560 2022-02-10] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 kldisk; C:\Windows\System32\DRIVERS\kldisk.sys [78560 2022-02-10] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 klflt; C:\Windows\System32\DRIVERS\klflt.sys [78560 2022-02-10] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 klgse; C:\Windows\System32\DRIVERS\klgse.sys [657696 2021-03-15] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 klhk; C:\Windows\System32\DRIVERS\klhk.sys [1400600 2021-03-15] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [176864 2022-02-10] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 klim6; C:\Windows\System32\DRIVERS\klim6.sys [78560 2022-02-10] (Kaspersky Lab JSC -> AO Kaspersky Lab) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [78560 2022-02-10] (Kaspersky Lab JSC -> AO Kaspersky Lab) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [78560 2022-02-10] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [78560 2022-02-10] (Kaspersky Lab JSC -> AO Kaspersky Lab) R3 kltap; C:\Windows\System32\DRIVERS\kltap.sys [55592 2021-02-19] (AnchorFree Inc -> The OpenVPN Project) R1 klwfp; C:\Windows\System32\DRIVERS\klwfp.sys [78560 2022-02-10] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 klwtp; C:\Windows\System32\DRIVERS\klwtp.sys [78560 2022-02-10] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [78560 2022-02-10] (Kaspersky Lab JSC -> AO Kaspersky Lab) S3 ssudmdm; C:\Windows\System32\DRIVERS\ssudmdm.sys [166752 2019-07-09] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R3 tap0901; C:\Windows\System32\DRIVERS\tap0901.sys [27136 2018-08-29] (OpenVPN Technologies, Inc. -> The OpenVPN Project) R3 kldlfmgr; C:\Windows\System32\Drivers\kldlfmgr.sys [24800 2022-02-10] (Kaspersky Lab JSC -> AO Kaspersky Lab) R3 kldlfwpk; C:\Windows\System32\Drivers\kldlfwpk.sys [24800 2022-02-10] (Kaspersky Lab JSC -> AO Kaspersky Lab) R3 Kldlimpc; C:\Windows\System32\Drivers\Kldlimpc.sys [2524896 2022-02-10] (Kaspersky Lab JSC -> AO Kaspersky Lab) R3 kldlksec; C:\Windows\System32\Drivers\kldlksec.sys [24800 2022-02-10] (Kaspersky Lab JSC -> AO Kaspersky Lab) R3 kldlksl; C:\Windows\System32\Drivers\kldlksl.sys [24800 2022-02-10] (Kaspersky Lab JSC -> AO Kaspersky Lab) R3 kldlndis; C:\Windows\System32\Drivers\kldlndis.sys [24800 2022-02-10] (Kaspersky Lab JSC -> AO Kaspersky Lab) R3 kldlnio; C:\Windows\System32\Drivers\kldlnio.sys [24800 2022-02-10] (Kaspersky Lab JSC -> AO Kaspersky Lab) S3 NPF; system32\drivers\NPF.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-03-19 10:30 - 2022-03-19 10:47 - 000053149 _____ C:\Users\Sahrane\Desktop\Addition.txt 2022-03-19 10:18 - 2022-03-19 10:51 - 000025579 _____ C:\Users\Sahrane\Desktop\FRST.txt 2022-03-19 10:17 - 2022-03-19 10:49 - 000000000 ____D C:\FRST 2022-03-19 10:15 - 2022-03-19 10:16 - 002364928 _____ (Farbar) C:\Users\Sahrane\Desktop\FRST64.exe 2022-03-19 08:46 - 2022-03-19 08:46 - 000000000 ____D C:\Users\Sahrane\AppData\Local\ZHP 2022-03-19 00:48 - 2022-03-19 00:48 - 000000000 ____D C:\Users\Sahrane\Desktop\Séquence 1 2022-03-18 15:16 - 2022-03-18 15:16 - 000000979 _____ C:\Users\Sahrane\Desktop\VSDC Free Video Editor.lnk 2022-03-18 15:16 - 2022-03-18 15:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FlashIntegro 2022-03-18 15:15 - 2022-03-18 15:17 - 000000000 ____D C:\Program Files\FlashIntegro 2022-03-18 15:10 - 2022-03-18 15:12 - 102335752 _____ (Flash-Integro LLC ) C:\Users\Sahrane\Downloads\video_editor_x64.exe 2022-03-18 14:59 - 2022-03-18 14:59 - 000000000 ____D C:\Users\Sahrane\Desktop\Montage -20220317T183855Z-001 2022-03-13 15:57 - 2022-03-13 15:57 - 008540344 _____ (Malwarebytes) C:\Users\Sahrane\Downloads\adwcleaner.exe 2022-03-13 11:57 - 2022-03-13 12:54 - 000000000 ____D C:\Users\Sahrane\Desktop\[ OxTorrent.cc ] Adobe Creative Cloud 2021 2022-03-13 11:42 - 2022-03-13 11:42 - 000000000 ____D C:\Program Files (x86)\My Company Name 2022-03-13 11:42 - 2009-07-09 03:00 - 000055280 ____N (Sonic Solutions) C:\Windows\system32\Drivers\PxHlpa64.sys 2022-03-13 11:42 - 2009-06-23 03:00 - 000010224 ____N (Sonic Solutions) C:\Windows\system32\Drivers\cdralw2k.sys 2022-03-13 11:42 - 2009-06-23 03:00 - 000010224 ____N (Sonic Solutions) C:\Windows\system32\Drivers\cdr4_xp.sys 2022-03-13 11:04 - 2022-03-18 14:38 - 000015281 _____ C:\Users\Sahrane\Desktop\S.odt 2022-03-12 23:10 - 2022-03-12 23:12 - 000000000 ____D C:\Users\Sahrane\Documents\VlcpVideoV1.0.1 2022-03-12 23:06 - 2022-03-12 23:06 - 000000000 _____ C:\Users\Sahrane\AppData\Roaming\Microsoft\Windows\Start Menu\Wpiydw3.exe 2022-03-12 23:05 - 2022-03-12 23:05 - 000350720 _____ C:\Users\Sahrane\AppData\Roaming\D8E0.tmp.exe 2022-03-12 23:05 - 2022-03-12 23:05 - 000235008 _____ C:\Users\Sahrane\AppData\Roaming\D1ED.tmp.exe 2022-03-12 23:05 - 2022-03-12 23:05 - 000135680 _____ C:\Users\Sahrane\AppData\Roaming\msdwf.exe 2022-03-12 23:05 - 2022-03-12 23:05 - 000135680 _____ C:\Users\Sahrane\AppData\Roaming\DB03.tmp.exe 2022-03-12 23:05 - 2022-03-12 23:05 - 000000000 _____ C:\Users\Sahrane\AppData\Roaming\DB03.tmp 2022-03-12 23:05 - 2022-03-12 23:05 - 000000000 _____ C:\Users\Sahrane\AppData\Roaming\D8E0.tmp 2022-03-12 23:05 - 2022-03-12 23:05 - 000000000 _____ C:\Users\Sahrane\AppData\Roaming\D1ED.tmp 2022-03-12 22:41 - 2022-03-12 22:50 - 000000000 ____D C:\Users\Sahrane\Desktop\Adobe Premiere Pro CS5 2022-03-12 22:11 - 2022-03-13 09:46 - 000000000 ____D C:\Users\Sahrane\Desktop\Adobe Premiere Pro CS5 LS7 2022-03-12 21:42 - 2022-03-12 21:42 - 000000000 ____D C:\Users\Default\AppData\Roaming\Macromedia 2022-03-12 21:07 - 2022-03-12 21:23 - 1518418371 _____ C:\Users\Sahrane\Desktop\Adobe Premiere Pro CS5 LS7.rar 2022-03-03 11:20 - 2022-03-03 11:39 - 000000000 ____D C:\Users\Sahrane\Desktop\Nouveau dossier (4) 2022-03-02 17:40 - 2022-03-02 17:53 - 1484285107 _____ C:\Users\Sahrane\Desktop\[inid4c] JoJo's Bizarre Adventure - Golden Wind 36 (BD 1080p FLAC) [EC32853D].mkv 2022-03-01 20:24 - 2022-03-19 10:31 - 000030962 _____ C:\Users\Sahrane\Desktop\dynamique psy.odt 2022-02-23 23:08 - 2022-02-23 23:08 - 000032607 _____ C:\Users\Sahrane\Desktop\exposé cours du lundi.odt 2022-02-20 19:11 - 2022-03-17 14:23 - 000000000 ____D C:\Users\Sahrane\Desktop\Imprimer pour film ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-03-19 10:44 - 2013-09-29 12:24 - 000000000 ____D C:\Program Files (x86)\Google 2022-03-19 10:32 - 2021-09-07 08:53 - 007145984 ___SH C:\Users\Sahrane\Desktop\Thumbs.db 2022-03-19 10:30 - 2009-07-14 05:45 - 000028144 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2022-03-19 10:30 - 2009-07-14 05:45 - 000028144 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2022-03-19 09:29 - 2014-07-03 23:16 - 000000000 ____D C:\Program Files\CCleaner 2022-03-19 09:24 - 2009-07-14 06:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2022-03-19 08:57 - 2015-08-25 17:05 - 000000000 ____D C:\Users\Sahrane\AppData\Roaming\ZHP 2022-03-19 08:38 - 2022-02-03 17:31 - 000000000 ____D C:\Users\Sahrane\AppData\Roaming\Notepad++ 2022-03-19 08:38 - 2012-09-23 17:22 - 000000000 ____D C:\Users\Sahrane\AppData\Roaming\uTorrent 2022-03-19 01:55 - 2021-03-01 10:45 - 000000000 ____D C:\Users\Sahrane\AppData\Roaming\vlc 2022-03-18 19:29 - 2012-09-13 17:18 - 000000000 ____D C:\Users\Sahrane\AppData\Local\VirtualStore 2022-03-18 15:15 - 2021-09-06 18:02 - 000000000 ____D C:\Program Files\Common Files\FlashIntegro 2022-03-18 15:15 - 2021-09-06 18:01 - 000000000 ____D C:\ProgramData\Package Cache 2022-03-18 15:13 - 2022-01-30 22:07 - 000000000 ____D C:\Users\Sahrane\Desktop\Vids 2022-03-18 14:39 - 2022-02-03 20:26 - 000000000 ____D C:\Users\Sahrane\Desktop\Codage 2022-03-18 08:36 - 2012-09-14 21:14 - 000000000 ____D C:\Users\Sahrane\AppData\Local\Adobe 2022-03-16 23:57 - 2021-08-02 01:27 - 000000045 ___HT C:\Windows\SysWOW64\2433354b28101101d4b2e4161501716e1c453606101704526abb0611cab4b27294b362d3031212a322b28101101d 2022-03-16 16:19 - 2021-01-13 00:28 - 000003870 _____ C:\Windows\system32\Tasks\CCleaner Update 2022-03-13 15:53 - 2020-01-16 18:23 - 000000000 ____D C:\Users\Sahrane\AppData\Roaming\Intel Rapid 2022-03-13 15:43 - 2013-10-26 12:46 - 000000000 ____D C:\Program Files\Common Files\Adobe 2022-03-13 15:43 - 2012-05-23 11:26 - 000000000 ____D C:\ProgramData\Adobe 2022-03-13 15:41 - 2013-10-26 14:35 - 000000000 ____D C:\Program Files\Adobe 2022-03-13 15:41 - 2012-05-23 11:25 - 000000000 ____D C:\Program Files (x86)\Adobe 2022-03-13 15:26 - 2021-11-05 19:02 - 000000000 ____D C:\Users\Sahrane\Desktop\Nouveau dossier (3) 2022-03-13 15:26 - 2021-09-20 21:35 - 000000000 ____D C:\Users\Sahrane\Desktop\Scolarité + CVEC 2022-03-13 15:10 - 2020-08-08 19:58 - 000000000 ____D C:\Users\Sahrane\Desktop\Nouveau dossier (5) 2022-03-13 15:08 - 2013-06-03 14:58 - 000000000 ____D C:\Users\Sahrane\Desktop\en attente 2022-03-13 11:42 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\inf 2022-03-13 09:42 - 2012-09-13 17:18 - 000144184 _____ C:\Users\Sahrane\AppData\Local\GDIPFONTCACHEV1.DAT 2022-03-13 09:40 - 2009-07-14 05:45 - 005209680 _____ C:\Windows\system32\FNTCACHE.DAT 2022-03-12 21:49 - 2013-10-26 13:02 - 000000000 ____D C:\ProgramData\regid.1986-12.com.adobe 2022-03-12 21:47 - 2012-09-13 19:16 - 000000000 ____D C:\Users\Sahrane\AppData\Roaming\Adobe 2022-03-11 19:44 - 2013-11-17 11:04 - 000000132 _____ C:\Users\Sahrane\AppData\Roaming\Préférences Adobe PNG Format CC 2022-03-10 10:14 - 2022-01-30 20:32 - 000003534 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-03-10 10:14 - 2022-01-30 20:32 - 000003406 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2022-02-27 15:45 - 2019-08-10 09:52 - 000000000 ____D C:\Users\Sahrane\AppData\Local\User Data 2022-02-19 16:47 - 2012-06-09 04:15 - 000802630 _____ C:\Windows\system32\perfh00C.dat 2022-02-19 16:47 - 2012-06-09 04:15 - 000173094 _____ C:\Windows\system32\perfc00C.dat 2022-02-19 16:47 - 2009-07-14 06:13 - 001807856 _____ C:\Windows\system32\PerfStringBackup.INI ==================== Fichiers à la racine de certains dossiers ======== 2021-03-21 21:53 - 2021-03-22 20:32 - 000334288 _____ (Mozilla Foundation) C:\ProgramData\freebl3.dll 2021-03-21 21:53 - 2021-03-22 20:32 - 000137168 _____ (Mozilla Foundation) C:\ProgramData\mozglue.dll 2021-03-21 21:53 - 2021-03-22 20:32 - 000440120 _____ (Microsoft Corporation) C:\ProgramData\msvcp140.dll 2021-03-21 21:53 - 2021-03-22 20:32 - 001246160 _____ (Mozilla Foundation) C:\ProgramData\nss3.dll 2021-03-21 21:53 - 2021-03-22 20:32 - 000144848 _____ (Mozilla Foundation) C:\ProgramData\softokn3.dll 2021-03-21 21:53 - 2021-03-22 20:32 - 000083784 _____ (Microsoft Corporation) C:\ProgramData\vcruntime140.dll 2021-09-06 00:02 - 2021-09-06 00:02 - 000000436 _____ () C:\Users\Sahrane\AppData\Roaming\Ali.pot 2015-07-30 19:31 - 2015-08-12 20:30 - 000000024 _____ () C:\Users\Sahrane\AppData\Roaming\appdataFr25.bin 2022-03-12 23:05 - 2022-03-12 23:05 - 000000000 _____ () C:\Users\Sahrane\AppData\Roaming\D1ED.tmp 2022-03-12 23:05 - 2022-03-12 23:05 - 000235008 _____ () C:\Users\Sahrane\AppData\Roaming\D1ED.tmp.exe 2022-03-12 23:05 - 2022-03-12 23:05 - 000000000 _____ () C:\Users\Sahrane\AppData\Roaming\D8E0.tmp 2022-03-12 23:05 - 2022-03-12 23:05 - 000350720 _____ () C:\Users\Sahrane\AppData\Roaming\D8E0.tmp.exe 2022-03-12 23:05 - 2022-03-12 23:05 - 000000000 _____ () C:\Users\Sahrane\AppData\Roaming\DB03.tmp 2022-03-12 23:05 - 2022-03-12 23:05 - 000135680 _____ () C:\Users\Sahrane\AppData\Roaming\DB03.tmp.exe 2020-01-15 15:50 - 2020-01-03 04:33 - 000299520 ___SH () C:\Users\Sahrane\AppData\Roaming\fjtrwid 2021-09-06 18:14 - 2021-09-06 18:14 - 000893608 _____ (AutoIt Team) C:\Users\Sahrane\AppData\Roaming\Male.exe.com 2022-03-12 23:05 - 2022-03-12 23:05 - 000135680 _____ () C:\Users\Sahrane\AppData\Roaming\msdwf.exe 2021-09-06 00:02 - 2021-09-06 00:02 - 000009217 _____ () C:\Users\Sahrane\AppData\Roaming\Proseguo.pot 2019-12-29 21:05 - 2020-09-19 20:33 - 000000112 _____ () C:\Users\Sahrane\AppData\Roaming\Préfs JP2K CS6 2014-07-08 13:03 - 2014-07-08 13:03 - 000000132 _____ () C:\Users\Sahrane\AppData\Roaming\Préférences Adobe BMP Format CC 2013-11-17 11:04 - 2022-03-11 19:44 - 000000132 _____ () C:\Users\Sahrane\AppData\Roaming\Préférences Adobe PNG Format CC 2021-09-06 00:02 - 2021-09-06 00:02 - 000893726 _____ () C:\Users\Sahrane\AppData\Roaming\Ritrovi.pot 2020-01-16 18:38 - 2020-01-16 22:09 - 000836120 _____ () C:\Users\Sahrane\AppData\Roaming\rtfvdc.exe 2020-01-16 18:25 - 2020-01-16 18:25 - 000049593 _____ () C:\Users\Sahrane\AppData\Roaming\rtgfewdfrfed.exe 2020-01-16 18:24 - 2020-01-16 18:24 - 016091648 _____ () C:\Users\Sahrane\AppData\Roaming\rtgrefedewd.exe 2020-01-16 21:54 - 2020-01-16 22:24 - 000314368 _____ () C:\Users\Sahrane\AppData\Roaming\trgfedrfg.exe 2021-09-06 00:02 - 2021-09-06 00:02 - 001141444 _____ () C:\Users\Sahrane\AppData\Roaming\Voto.pot 2020-01-15 15:50 - 2020-01-03 04:33 - 000320202 ___SH () C:\Users\Sahrane\AppData\Roaming\wdftgfe 2014-09-01 09:18 - 2014-09-01 09:18 - 000001248 _____ () C:\Users\Sahrane\AppData\Roaming\ZBLX 2014-07-24 02:03 - 2014-07-24 02:03 - 000001456 _____ () C:\Users\Sahrane\AppData\Local\Adobe Enregistrer pour le Web 13.0 Prefs 2021-04-23 15:10 - 2021-04-23 15:10 - 000003584 _____ () C:\Users\Sahrane\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2019-06-22 23:42 - 2019-06-22 23:49 - 000005946 _____ () C:\Users\Sahrane\AppData\Local\krita.log 2019-06-22 23:49 - 2019-06-22 23:49 - 000000039 _____ () C:\Users\Sahrane\AppData\Local\kritadisplayrc 2019-06-22 23:42 - 2019-06-22 23:49 - 000015786 _____ () C:\Users\Sahrane\AppData\Local\kritarc 2018-05-23 23:54 - 2018-05-23 23:54 - 000000776 _____ () C:\Users\Sahrane\AppData\Local\Nox_crash.log 2015-04-14 22:52 - 2015-04-29 16:42 - 000000804 _____ () C:\Users\Sahrane\AppData\Local\Temp-log.txt ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) LastRegBack: 2022-03-12 14:06 ==================== Fin de FRST.txt ========================