Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 24-06-2022 01 Exécuté par Max (administrateur) sur LAPTOP-UD9PJ8EQ (ASUSTeK COMPUTER INC. VivoBook_ASUSLaptop X571GT_F571GT) (27-06-2022 17:14:07) Exécuté depuis C:\Users\Max\Desktop Profils chargés: Max Plate-forme: Microsoft Windows 10 Famille Version 21H2 19044.1766 (X64) Langue: Français (France) Navigateur par défaut: Edge Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_5e38ce8081e93b46\ASUSOptimization\AsusOSD.exe (C:\incoming qubittorent\[ Torrent911.com ] DS.SolidWorks.2020.SP0.Premium\_SolidSQUAD_\_SolidSQUAD_\SolidWorks_Flexnet_Server\lmgrd.exe ->) (Dassault Systèmes SolidWorks Corporation) [Fichier non signé] C:\incoming qubittorent\[ Torrent911.com ] DS.SolidWorks.2020.SP0.Premium\_SolidSQUAD_\_SolidSQUAD_\SolidWorks_Flexnet_Server\sw_d.exe (C:\incoming qubittorent\[ Torrent911.com ] DS.SolidWorks.2020.SP0.Premium\_SolidSQUAD_\_SolidSQUAD_\SolidWorks_Flexnet_Server\lmgrd.exe ->) (Flexera Software LLC -> Flexera Software LLC) C:\incoming qubittorent\[ Torrent911.com ] DS.SolidWorks.2020.SP0.Premium\_SolidSQUAD_\_SolidSQUAD_\SolidWorks_Flexnet_Server\lmgrd.exe (C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe ->) (Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\Win64\EpicWebHelper.exe <2> (C:\Program Files (x86)\ExpressVPN\bootstrap\amd64\nssm.exe ->) (EXPRSVPN LLC -> ExpressVPN) C:\Program Files (x86)\ExpressVPN\expressvpnd\expressvpnd.exe (C:\Program Files\Bitdefender Agent\ProductAgentService.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\26.0.1.222\DiscoverySrv.exe (C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdagent.exe (C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdntwrk.exe (C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (S.C. BITDEFENDER S.R.L. -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\wsccommunicator.exe (C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3> (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (C:\Program Files\RogueKiller\RogueKillerSvc.exe ->) (ADLICE -> ) C:\Program Files\RogueKiller\RogueKiller64.exe (DriverStore\FileRepository\asussci2.inf_amd64_5e38ce8081e93b46\ASUSOptimization\AsusOptimization.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_5e38ce8081e93b46\ASUSOptimization\AsusOptimizationStartupTask.exe (DriverStore\FileRepository\cui_dch.inf_amd64_9de8154b682af864\igfxCUIService.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_9de8154b682af864\igfxEM.exe (explorer.exe ->) (Adobe Inc. -> Adobe Systems Inc.) [Fichier non signé] C:\Program Files\Adobe\Acrobat DC\Acrobat\acrotray.exe (explorer.exe ->) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2> (explorer.exe ->) (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iTunes_12124.1.57017.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (explorer.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender VPN\bdvpnapp.exe (explorer.exe ->) (Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <7> (EXPRSVPN LLC -> ExpressVPN) C:\Program Files (x86)\ExpressVPN\expressvpn-ui\ExpressVPNNotificationService.exe (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (services.exe ->) (ADLICE -> ) C:\Program Files\RogueKiller\RogueKillerSvc.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.​) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_5e38ce8081e93b46\ASUSLinkRemote\AsusLinkRemote.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_5e38ce8081e93b46\AsusAppService\AsusAppService.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_5e38ce8081e93b46\ASUSLinkNear\AsusLinkNear.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_5e38ce8081e93b46\ASUSOptimization\AsusOptimization.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_5e38ce8081e93b46\ASUSSoftwareManager\AsusSoftwareManager.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_5e38ce8081e93b46\ASUSSwitch\AsusSwitch.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_5e38ce8081e93b46\ASUSSystemAnalysis\AsusSystemAnalysis.exe (services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\ProductAgentService.exe (services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\redline\bdredline.exe (services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe <3> (services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe (services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender VPN\bdvpnService.exe (services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe (services.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Windows\System32\ELANFPService.exe (services.exe ->) (EXPRSVPN LLC -> ExpressVPN) C:\Program Files (x86)\ExpressVPN\bootstrap\amd64\nssm.exe (services.exe ->) (Flexera Software LLC -> Flexera Software LLC) C:\incoming qubittorent\[ Torrent911.com ] DS.SolidWorks.2020.SP0.Premium\_SolidSQUAD_\_SolidSQUAD_\SolidWorks_Flexnet_Server\lmgrd.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (services.exe ->) (ICEpower a/s -> ICEpower A/S) C:\Windows\System32\DriverStore\FileRepository\icesoundapo64.inf_amd64_f2e61b83163bf054\ICEsoundService64.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_7aa6ca9dbb25bff8\jhi_service.exe (services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_9de8154b682af864\igfxCUIService.exe (services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_74dc8483545826b6\IntelCpHDCPSvc.exe (services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_74dc8483545826b6\IntelCpHeciSvc.exe (services.exe ->) (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_99239023b47c777a\RstMwService.exe (services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_4.66.2001.0_x64__8wekyb3d8bbwe\gamingservices.exe (services.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_4.66.2001.0_x64__8wekyb3d8bbwe\gamingservicesnet.exe (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> ASUSTek COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_5e38ce8081e93b46\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3> (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvam.inf_amd64_b0ff340d610a293e\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe (services.exe ->) (VMware, Inc. -> VMware, Inc.) C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe (services.exe ->) (VMware, Inc. -> VMware, Inc.) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe (services.exe ->) (VMware, Inc. -> VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe (services.exe ->) (VMware, Inc. -> VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe (svchost.exe ->) (Adobe Systems Incorporated) C:\Program Files\WindowsApps\AcrobatNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2204.13303.0_x64__8wekyb3d8bbwe\Cortana.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_ec5ad85a0fbc74ea\RtkAudUService64.exe <3> ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [Bdagent] => C:\Program Files\Bitdefender\Bitdefender Security\bdagent.exe [985224 2022-06-07] (Bitdefender SRL -> Bitdefender) HKLM\...\Run: [Acrobat Assistant 8.0] => C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrotray.exe [6608096 2022-02-26] (Adobe Inc. -> Adobe Systems Inc.) [Fichier non signé] HKLM\...\Run: [] => [X] HKLM\...\Run: [AgentConnectix64] => C:\Program Files (x86)\Druide\Connectix 10\Application\Bin64\AgentConnectix.exe [2695728 2020-11-30] (Druide informatique inc. -> Druide informatique inc.) HKLM\...\Run: [BdVpnApp] => C:\Program Files\Bitdefender\Bitdefender VPN\BdVpnApp.exe [492632 2022-06-20] (Bitdefender SRL -> Bitdefender) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [708840 2022-04-26] (Oracle America, Inc. -> Oracle Corporation) HKLM-x32\...\Run: [ExpressVPNNotificationService] => C:\Program Files (x86)\ExpressVPN\expressvpn-ui\ExpressVPNNotificationServiceStarter.exe [379360 2022-05-27] (EXPRSVPN LLC -> ExpressVPN) HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\59.0.3.0\GoogleDriveFS.exe --startup_mode (Pas de fichier) HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\59.0.3.0\GoogleDriveFS.exe --startup_mode (Pas de fichier) HKU\S-1-5-21-3532310892-2074227971-806926255-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4282328 2022-06-07] (Valve Corp. -> Valve Corporation) HKU\S-1-5-21-3532310892-2074227971-806926255-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [7097112 2022-04-07] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-21-3532310892-2074227971-806926255-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32656336 2022-06-22] (Epic Games Inc. -> Epic Games, Inc.) HKU\S-1-5-21-3532310892-2074227971-806926255-1001\...\Run: [RAMSaverPro] => C:\Program Files (x86)\WinTools Software\RAM Saver Professional\ramsaverpro.exe [281432 2021-07-21] (DYUNER, OOO -> WinTools Software, Ltd.) HKU\S-1-5-21-3532310892-2074227971-806926255-1001\...\Run: [MicrosoftEdgeAutoLaunch_0C0D5F59005A32876380EE3B976869A6] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3601824 2022-06-22] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\59.0.3.0\GoogleDriveFS.exe --startup_mode (Pas de fichier) HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\Windows\system32\AdobePDF.dll [203936 2021-12-24] (Adobe Inc. -> Adobe Systems Inc) HKLM\...\Print\Monitors\PDF-XChange V6 Printer Port Monitor (Lite): C:\WINDOWS\system32\pxcpm5L.dll [150720 2017-05-12] (Tracker Software Products (Canada) Ltd -> Tracker Software Products (Canada) Ltd.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\102.0.5005.115\Installer\chrmstp.exe [2022-06-10] (Google LLC -> Google LLC) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\$McRebootA5E6DEAA56$.lnk [2022-06-27] ShortcutTarget: $McRebootA5E6DEAA56$.lnk -> (Pas de fichier) ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {06ED9FE9-DCBB-4FD8-A348-0B8CD80AEC68} - System32\Tasks\Opera scheduled assistant Autoupdate 1650646760 => C:\Users\Max\AppData\Local\Programs\Opera\launcher.exe -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\Max\AppData\Local\Programs\Opera\assistant" $(Arg0) Task: {0A11852D-B5AE-4219-A784-60DA24B4F7F5} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3339120 2021-06-15] (NVIDIA Corporation -> NVIDIA Corporation) Task: {1CBA4D2B-F950-493C-8484-EE53BEED593F} - \Microsoft\Windows\PLA\074C0539-0999-4DA9-9D0D-3D016B62F4E9 -> Pas de fichier <==== ATTENTION Task: {1D97E879-10A9-4188-ADF9-8A8F6DDEDEB7} - System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => C:\Program Files\Bitdefender Agent\26.0.1.222\WatchDog.exe [1050728 2022-03-23] (Bitdefender SRL -> Bitdefender) Task: {22456F19-F39F-4274-A558-0D4F7E7C371E} - System32\Tasks\PostponeDeviceSetupToast_S-1-5-21-3532310892-2074227971-806926255-1001_1 => {5ded83ef-1e99-48cf-bf83-676d2a6db408} C:\Windows\System32\oobe\UserOOBE.dll [416768 2022-06-17] (Microsoft Windows -> Microsoft Corporation) Task: {23DC63D3-F851-470E-86B8-1347501A5B8A} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [903024 2021-05-04] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log Task: {2E133285-415D-47C1-89B5-F52148671B03} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {2F1D716E-2D3E-4FB4-9362-E3D9C7BB305F} - System32\Tasks\Opera scheduled Autoupdate 1650646759 => C:\Users\Max\AppData\Local\Programs\Opera\launcher.exe --scheduledautoupdate $(Arg0) (Pas de fichier) Task: {3DCEBF87-C161-41D6-B6C3-EDC7915B18B4} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {424C0B89-0C0A-449B-BEB9-DF2442A76923} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905072 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {6464B34C-DFD3-4374-BA08-92B455360175} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {6AE78755-2BE5-4FB9-896B-7944F34FE0CC} - System32\Tasks\GoogleUpdateTaskMachineUA{74F4495B-E470-4145-B59C-53B04DD11669} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [168632 2022-04-23] (Google LLC -> Google LLC) Task: {6CBEF361-EE00-46F9-B3B8-D803788F07C8} - \Microsoft\Windows\Management\Provisioning\PostResetBoot -> Pas de fichier <==== ATTENTION Task: {7A167967-4854-404A-BA7C-8BA7BD3DE581} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {7B317BD5-EE81-4C2E-AAB7-BE97A11E8D1C} - \Microsoft\Windows\PLA\AsusLinkNear -> Pas de fichier <==== ATTENTION Task: {A1C99E21-0097-4D32-97BA-BBB9FCC397C7} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424 2021-11-18] (Adobe Inc. -> Adobe Inc.) Task: {A7324E9A-DC76-4DCD-A9F0-8F8DA381A364} - System32\Tasks\McAfeeTsk\OOBEUpgrader => C:\Program Files\McAfee\MSC\OOBE_Upgrader.exe /Run (Pas de fichier) Task: {ADC70D2B-C658-4960-A287-3F8806027AE7} - System32\Tasks\GoogleUpdateTaskMachineCore{BEF0A702-B0FC-4430-9A70-7713CB0281D6} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [168632 2022-04-23] (Google LLC -> Google LLC) Task: {C8D6EFE0-A2FD-4C57-B480-F608D4AAD098} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [903024 2021-05-04] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {CC14AC87-9FFC-45DE-8F7B-ABC86965EDB2} - \OneDrive Standalone Update Task-S-1-5-21-4002424831-676090626-3727507602-500 -> Pas de fichier <==== ATTENTION Task: {D0E3A497-6E75-4A03-B2BE-8BA35C719AE7} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe (Pas de fichier) Task: {D8D15CAE-3C6D-475F-9738-7B90EAE895E0} - System32\Tasks\AsusSystemAnalysis_754F3273-0563-4F20-B12F-826510B07474 => C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_5e38ce8081e93b46\ASUSSystemAnalysis\AsusSystemAnalysis.exe [3555560 2022-04-17] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) Task: {DA071F95-7775-4E85-B491-01F96D0262F5} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905072 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {E57F0A65-ECA5-450D-AE7A-F9DA1192738D} - System32\Tasks\ASUS Optimization 36D18D69AFC3 => C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_5e38ce8081e93b46\ASUSOptimization\AsusHotkey.exe [240304 2022-04-17] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) Task: {ED2ED388-41D8-46BD-B2DA-0FC07BA9FAEA} - System32\Tasks\ASUS Update Checker 2.0 => C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_5e38ce8081e93b46\ASUSSoftwareManager\AsusUpdateChecker.exe [790768 2022-04-17] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) Task: {FE50DB5C-1918-4713-A8BA-F00BE714F12A} - System32\Tasks\RtkAudUService64_BG => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_ec5ad85a0fbc74ea\RtkAudUService64.exe [1212720 2020-12-18] (Realtek Semiconductor Corp. -> Realtek Semiconductor) Task: {FEC91C24-477F-443E-9DCE-AEDDB3625972} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [645488 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704 2011-08-30] (Apple Inc. -> Apple Inc.) Winsock: Catalog9 15 C:\WINDOWS\SysWOW64\vsocklib.dll [44128 2021-08-16] (VMware, Inc. -> VMware, Inc.) Winsock: Catalog9 16 C:\WINDOWS\SysWOW64\vsocklib.dll [44128 2021-08-16] (VMware, Inc. -> VMware, Inc.) Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [132968 2011-08-30] (Apple Inc. -> Apple Inc.) Winsock: Catalog9-x64 15 C:\Windows\system32\vsocklib.dll [48224 2021-08-16] (VMware, Inc. -> VMware, Inc.) Winsock: Catalog9-x64 16 C:\Windows\system32\vsocklib.dll [48224 2021-08-16] (VMware, Inc. -> VMware, Inc.) Tcpip\Parameters: [DhcpNameServer] 172.20.10.1 Tcpip\..\Interfaces\{7a6b583d-55e1-476a-adea-d5194a292024}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{ac6833d3-c45d-48ab-ae20-242e4082f637}: [DhcpNameServer] 172.20.10.1 Tcpip\..\Interfaces\{e5616611-ae0a-4438-9aba-1a64a1ff0451}: [DhcpNameServer] 172.20.10.1 Tcpip\..\Interfaces\{f64b6e75-2762-40b6-a206-446625eb4703}: [NameServer] 10.65.0.1 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\Max\AppData\Local\Microsoft\Edge\User Data\Default [2022-06-27] Edge HKLM\...\Edge\Extension: [cchfigjcpjmclmmphipdkeocklpnjecm] Edge HKLM-x32\...\Edge\Extension: [dbconhplchnbippmjabbcedokimacfjl] Edge HKLM-x32\...\Edge\Extension: [pdhdldaneekjpoaldekpgomomeabpnek] FireFox: ======== FF HKLM\...\Firefox\Extensions: [bdwtwe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdwteff.xpi FF Extension: (Bitdefender Wallet) - C:\Program Files\Bitdefender\Bitdefender Security\bdwteff.xpi [2021-06-29] [UpdateUrl:hxxps://download.bitdefender.com/windows/desktop/connect/wallet/updates.json ] FF HKLM\...\Firefox\Extensions: [bdtbe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbef.xpi FF Extension: (Bitdefender Anti-tracker) - C:\Program Files\Bitdefender\Bitdefender Security\bdtbef.xpi [2020-09-17] [UpdateUrl:hxxps://download.bitdefender.com/windows/desktop/connect/antitracker/updates.json ] FF HKLM\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi FF Extension: (Adobe Acrobat) - C:\Program Files\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2021-02-01] FF HKLM\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbext FF Extension: (Bitdefender Antispam Toolbar) - C:\Program Files\Bitdefender\Bitdefender Security\bdtbext [2022-04-06] [] [non signé] FF HKLM-x32\...\Firefox\Extensions: [bdwtwe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdwteff.xpi FF HKLM-x32\...\Firefox\Extensions: [bdtbe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbef.xpi FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi FF HKLM-x32\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbext FF Plugin: @java.com/DTPlugin,version=11.333.2 -> C:\Program Files\Java\jre1.8.0_333\bin\dtplugin\npDeployJava1.dll [2022-05-18] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.333.2 -> C:\Program Files\Java\jre1.8.0_333\bin\plugin2\npjp2.dll [2022-05-18] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2017-05-12] (Tracker Software Products (Canada) Ltd -> Tracker Software Products (Canada) Ltd.) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2022-04-07] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2017-05-12] (Tracker Software Products (Canada) Ltd -> Tracker Software Products (Canada) Ltd.) FF Plugin HKU\.DEFAULT: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2017-05-12] (Tracker Software Products (Canada) Ltd -> Tracker Software Products (Canada) Ltd.) FF Plugin HKU\S-1-5-21-3532310892-2074227971-806926255-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2017-05-12] (Tracker Software Products (Canada) Ltd -> Tracker Software Products (Canada) Ltd.) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default [2022-06-27] CHR Notifications: Default -> hxxps://freer.es; hxxps://se25.biz CHR StartupUrls: Default -> "hxxps://www.google.com/" CHR Extension: (Safe Torrent Scanner) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\aegnopegbbhjeeiganiajffnalhlkkjb [2022-06-14] CHR Extension: (Adblock360) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\bcjchineajlfhdlaonabjhlllhmdlmdc [2022-04-23] CHR Extension: (Adblock pour Youtube™) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmedhionkhpnakcndndgjdbohmhepckk [2022-05-19] CHR Extension: (Ecosia Search) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\eedlgdlajadkbbjoobobefphmfkcchfk [2022-06-27] CHR Extension: (Adobe Acrobat : outils de modification, de conversion et de signature de PDF) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2022-06-13] CHR Extension: (Dark Reader) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\eimadpbcbfnmbkopoojfekhnkhdbieeh [2022-06-12] CHR Extension: (Microsoft Rewards) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbgcedjacmlbgleddnoacbnijgmiolem [2022-04-23] CHR Extension: (ExpressVPN : proxy VPN pour une connexion sécurisée) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\fgddmllnllkalaagkghckoinaemmogpe [2022-06-05] CHR Extension: (Bitdefender Wallet) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\gannpgaobkkhmpomoijebaigcapoeebl [2022-04-23] CHR Extension: (Google Docs hors connexion) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-06-17] CHR Extension: (Cosmopolise) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\ipihgjdhjoldhpfpmiiimpnmohpfhkcm [2022-06-24] CHR Extension: (Plus) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlihfhenloklceecaibhfbjppmleoiob [2022-04-23] CHR Extension: (Bitdefender Anti-tracker) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\khndhdhbebhaddchcgnalcjlaekbbeof [2022-04-23] CHR Extension: (Google Dictionary (by Google)) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgijmajocgfcbeboacabfgobmjgjcoja [2022-06-12] CHR Extension: (SponsorBlock pour YouTube - Supprime les publicités intégrées) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\mnjggcdmjocbbbhaepdhchncahnbgone [2022-06-21] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-04-23] CHR Extension: (AdBlock Master) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\ofmjepimahcfbmcdfbmeihkondkfeobh [2022-04-23] CHR Profile: C:\Users\Max\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-06-24] CHR Profile: C:\Users\Max\AppData\Local\Google\Chrome\User Data\Profile 1 [2022-06-24] CHR Extension: (Safe Torrent Scanner) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aegnopegbbhjeeiganiajffnalhlkkjb [2022-06-21] CHR Extension: (Adobe Acrobat : outils de modification, de conversion et de signature de PDF) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2022-06-21] CHR Extension: (McAfee® WebAdvisor) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2022-06-21] CHR Extension: (Bitdefender Wallet) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gannpgaobkkhmpomoijebaigcapoeebl [2022-06-21] CHR Extension: (Google Docs hors connexion) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-06-21] CHR Extension: (Bitdefender Anti-tracker) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\khndhdhbebhaddchcgnalcjlaekbbeof [2022-06-21] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-06-21] CHR Profile: C:\Users\Max\AppData\Local\Google\Chrome\User Data\System Profile [2022-06-27] CHR HKLM\...\Chrome\Extension: [cchfigjcpjmclmmphipdkeocklpnjecm] CHR HKLM-x32\...\Chrome\Extension: [aegnopegbbhjeeiganiajffnalhlkkjb] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKLM-x32\...\Chrome\Extension: [gannpgaobkkhmpomoijebaigcapoeebl] CHR HKLM-x32\...\Chrome\Extension: [khndhdhbebhaddchcgnalcjlaekbbeof] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-11-18] (Adobe Inc. -> Adobe Inc.) S3 AfVpnService; C:\Program Files\Bitdefender\Bitdefender VPN\hydra.sdk.windows.service.exe [355992 2022-06-18] (Get Aura Inc -> AnchorFree Inc.) S2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [96056 2019-08-26] (Apple Inc. -> Apple Inc.) R2 AsusAppService; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_5e38ce8081e93b46\AsusAppService\AsusAppService.exe [872112 2022-04-17] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 ASUSLinkNear; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_5e38ce8081e93b46\ASUSLinkNear\AsusLinkNear.exe [1163488 2022-04-17] (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) R2 ASUSLinkRemote; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_5e38ce8081e93b46\ASUSLinkRemote\AsusLinkRemote.exe [762016 2022-04-17] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.​) R2 ASUSOptimization; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_5e38ce8081e93b46\ASUSOptimization\AsusOptimization.exe [373984 2022-04-17] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 ASUSSoftwareManager; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_5e38ce8081e93b46\ASUSSoftwareManager\AsusSoftwareManager.exe [1054960 2022-04-17] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 ASUSSwitch; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_5e38ce8081e93b46\ASUSSwitch\AsusSwitch.exe [605424 2022-04-17] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 ASUSSystemAnalysis; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_5e38ce8081e93b46\ASUSSystemAnalysis\AsusSystemAnalysis.exe [3555560 2022-04-17] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 ASUSSystemDiagnosis; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_5e38ce8081e93b46\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe [709040 2022-04-17] (Microsoft Windows Hardware Compatibility Publisher -> ASUSTek COMPUTER INC.) R2 BDAuxSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [819848 2022-06-07] (Bitdefender SRL -> Bitdefender) R2 BDProtSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [819848 2022-06-07] (Bitdefender SRL -> Bitdefender) R2 bdredline; C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe [2993256 2022-01-28] (Bitdefender SRL -> Bitdefender) R2 bdredline_agent; C:\Program Files\Bitdefender Agent\redline\bdredline.exe [2454632 2022-02-10] (Bitdefender SRL -> Bitdefender) R2 BdVpnService; C:\Program Files\Bitdefender\Bitdefender VPN\bdvpnservice.exe [449112 2022-06-20] (Bitdefender SRL -> Bitdefender) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8885112 2022-05-20] (BattlEye Innovations e.K. -> ) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [813032 2022-05-20] (EasyAntiCheat Oy -> Epic Games, Inc) R2 ExpressVPNService; C:\Program Files (x86)\ExpressVPN\bootstrap\amd64\nssm.exe [438240 2022-05-27] (EXPRSVPN LLC -> ExpressVPN) S2 GameInput Service; C:\Program Files (x86)\Microsoft GameInput\x64\gameinputsvc.exe [75240 2022-05-25] (Microsoft Corporation -> Microsoft Corporation) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [223904 2022-05-18] (HP Inc. -> HP Inc.) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [8677120 2022-06-12] (Malwarebytes Inc. -> Malwarebytes) R2 ProductAgentService; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [787608 2022-05-03] (Bitdefender SRL -> Bitdefender) R2 rkrtservice; C:\Program Files\RogueKiller\RogueKillerSvc.exe [14419440 2022-03-07] (ADLICE -> ) R2 SolidWorks Flexnet Server; C:\incoming qubittorent\[ Torrent911.com ] DS.SolidWorks.2020.SP0.Premium\_SolidSQUAD_\_SolidSQUAD_\SolidWorks_Flexnet_Server\lmgrd.exe [1393128 2022-05-25] (Flexera Software LLC -> Flexera Software LLC) S3 ucldr_battlegrounds_gl; C:\Program Files\Common Files\UNCHEATER\ucldr_battlegrounds_gl.exe [6020336 2022-04-20] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.) R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe [279176 2022-06-07] (Bitdefender SRL -> Bitdefender) R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [819848 2022-06-07] (Bitdefender SRL -> Bitdefender) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2203.5-0\NisSrv.exe [3116848 2022-04-20] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2203.5-0\MsMpEng.exe [133544 2022-04-20] (Microsoft Windows Publisher -> Microsoft Corporation) S3 zksvc; C:\Program Files\Common Files\PUBG\zksvc.exe [9259312 2022-04-20] (PUBG CORPORATION -> KRAFTON, Inc) R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvam.inf_amd64_b0ff340d610a293e\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvam.inf_amd64_b0ff340d610a293e\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) R3 AsusPTPDrv; C:\WINDOWS\System32\drivers\AsusPTPFilter.sys [113496 2021-01-14] (ASUSTek Computer Inc. -> ASUSTek COMPUTER INC.) R3 AsusSAIO; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_5e38ce8081e93b46\ASUSSystemAnalysis\AsusSAIO.sys [37040 2022-04-17] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R1 atc; C:\WINDOWS\System32\DRIVERS\atc.sys [4802976 2022-05-12] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender S.R.L. Bucharest, ROMANIA) R1 ATKWMIACPIIO; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_5e38ce8081e93b46\ASUSOptimization\AsusWmiAcpi.sys [45248 2022-04-17] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 BdDci; C:\WINDOWS\system32\DRIVERS\bddci.sys [800672 2021-08-26] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender) S0 bdelam; C:\WINDOWS\System32\drivers\bdelam.sys [22976 2020-12-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Bitdefender) R0 bdprivmon; C:\WINDOWS\System32\DRIVERS\bdprivmon.sys [33208 2022-02-01] (Microsoft Windows Hardware Compatibility Publisher -> © Bitdefender SRL) S3 bduefiscan; C:\WINDOWS\system32\DRIVERS\bduefiscan.sys [55864 2021-07-09] (Bitdefender SRL -> Bitdefender) R1 bdvpn_netfilter; C:\WINDOWS\System32\drivers\bdvpn_netfilter.sys [94600 2021-09-16] (Pango Inc. -> Pango Inc) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [160376 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [158640 2022-05-30] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S3 expressvpnsplittunnel; C:\Program Files (x86)\ExpressVPN\splittunnel\expressvpnsplittunnel.sys [45640 2022-05-27] (ExprsVPN LLC -> ExpressVPN) R3 expressvpntun; C:\WINDOWS\System32\drivers\expressvpn-tun.sys [46896 2021-12-13] (Express VPN International Ltd. -> ExpressVPN) R0 Gemma; C:\WINDOWS\System32\DRIVERS\gemma.sys [1262496 2022-06-07] (Microsoft Windows Hardware Compatibility Publisher -> BitDefender S.R.L. Bucharest, ROMANIA) U4 googledrivefs3758; C:\WINDOWS\System32\DRIVERS\googledrivefs3758.sys [384584 2022-04-14] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.) R2 Ignis; C:\WINDOWS\system32\DRIVERS\ignis.sys [185312 2020-10-07] (Bitdefender SRL -> Bitdefender) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [223176 2022-06-24] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2022-04-25] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [192960 2022-06-24] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [74704 2022-06-24] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239544 2022-06-24] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [181992 2022-06-24] (Malwarebytes Inc. -> Malwarebytes) S3 Netaapl; C:\WINDOWS\System32\drivers\netaapl64.sys [32352 2017-11-28] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.) U1 ReasonCamFilter; C:\WINDOWS\System32\DRIVERS\ReasonCamFilter.sys [49992 2022-06-12] (Reason CyberSecurity Inc. -> Reason Software Company) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167544 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [47920 2020-02-20] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project) R3 tapexpressvpn; C:\WINDOWS\System32\drivers\tapexpressvpn.sys [61496 2021-12-13] (ExprsVPN LLC -> The OpenVPN Project) U3 TrueSight; C:\Windows\System32\drivers\truesight.sys [38032 2022-06-24] (Adlice -> ) R0 trufos; C:\WINDOWS\System32\DRIVERS\trufos.sys [633264 2022-06-07] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender) R0 vlflt; C:\WINDOWS\System32\DRIVERS\vlflt.sys [474048 2022-05-12] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender) R2 VMnetBridge; C:\WINDOWS\system32\DRIVERS\vmnetbridge.sys [67072 2022-02-18] (VMware, Inc. -> VMware, Inc.) R0 vsock; C:\WINDOWS\System32\DRIVERS\vsock.sys [105912 2021-08-16] (VMware, Inc. -> VMware, Inc.) S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [49600 2022-04-20] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [443664 2022-04-20] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [90384 2022-04-20] (Microsoft Windows -> Microsoft Corporation) S3 xhunter1; C:\WINDOWS\xhunter1.sys [1431256 2022-04-23] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-06-27 17:14 - 2022-06-27 17:14 - 000043436 _____ C:\Users\Max\Desktop\FRST.txt 2022-06-27 17:12 - 2022-06-27 17:14 - 000000000 ____D C:\FRST 2022-06-27 17:10 - 2022-06-27 17:10 - 002369024 _____ (Farbar) C:\Users\Max\Desktop\FRST64.exe 2022-06-27 15:54 - 2022-06-27 15:54 - 000007218 _____ C:\Users\Max\Downloads\téléchargement.jfif 2022-06-27 15:34 - 2022-06-27 15:34 - 000004036 _____ C:\WINDOWS\system32\Tasks\PostponeDeviceSetupToast_S-1-5-21-3532310892-2074227971-806926255-1001_1 2022-06-26 14:54 - 2022-06-26 14:54 - 000000000 ____D C:\Users\Max\AppData\Roaming\eTeks 2022-06-26 14:53 - 2022-06-26 14:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eTeks Sweet Home 3D 2022-06-26 14:53 - 2022-06-26 14:53 - 000000000 ____D C:\Program Files\Sweet Home 3D 2022-06-26 14:44 - 2022-06-27 14:25 - 000000000 ____D C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Finson 2022-06-25 16:41 - 2022-06-25 16:43 - 000000000 ____D C:\Users\Max\Documents\MBackups 2022-06-25 16:40 - 2022-06-27 15:33 - 000000000 ____D C:\Program Files\Common Files\Apple 2022-06-25 16:38 - 2022-06-25 16:43 - 000000000 ____D C:\ProgramData\AomeiMB 2022-06-25 16:38 - 2022-06-25 16:38 - 000000000 _____ C:\Program Files (x86)\test.txt 2022-06-25 16:13 - 2022-06-25 16:15 - 000002668 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk 2022-06-25 16:13 - 2022-06-25 16:15 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office 2016 2022-06-25 16:13 - 2022-06-25 16:13 - 000002741 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk 2022-06-25 16:13 - 2022-06-25 16:13 - 000002674 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive Entreprise.lnk 2022-06-25 16:13 - 2022-06-25 16:13 - 000002660 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk 2022-06-25 16:13 - 2022-06-25 16:13 - 000002660 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk 2022-06-25 16:13 - 2022-06-25 16:13 - 000002654 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk 2022-06-25 16:13 - 2022-06-25 16:13 - 000002640 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk 2022-06-25 16:12 - 2022-06-25 16:12 - 000000000 ____D C:\WINDOWS\PCHEALTH 2022-06-25 16:12 - 2022-06-25 16:12 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2022-06-25 16:11 - 2022-06-25 16:11 - 000000000 __RHD C:\MSOCache 2022-06-24 15:11 - 2022-06-24 15:14 - 000192960 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys 2022-06-22 19:51 - 2022-06-22 19:51 - 000234832 _____ C:\ProgramData\vpn.1655920265.bdinstall.v2.bin 2022-06-22 19:51 - 2022-06-22 19:51 - 000085424 _____ C:\ProgramData\vpn.uninstall.1655920268.bdinstall.v2.bin 2022-06-22 19:51 - 2022-06-22 19:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender VPN 2022-06-20 13:14 - 2022-06-24 14:55 - 000000000 ____D C:\Users\Max\AppData\Roaming\WeMod 2022-06-20 13:14 - 2022-06-24 14:55 - 000000000 ____D C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WeMod 2022-06-20 13:14 - 2022-06-24 14:55 - 000000000 ____D C:\Users\Max\AppData\Local\WeMod 2022-06-20 10:24 - 2022-06-24 15:14 - 000074704 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2022-06-20 10:23 - 2022-06-24 15:14 - 000181992 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys 2022-06-18 18:35 - 2022-06-24 14:56 - 000000000 ____D C:\Users\Max\AppData\Roaming\Telegram Desktop 2022-06-18 18:34 - 2022-06-19 13:45 - 000000000 ____D C:\Users\Max\AppData\Roaming\Scratch 2022-06-18 18:34 - 2022-06-18 18:34 - 000000000 ____D C:\Users\Max\AppData\Local\scratch-desktop-updater 2022-06-18 18:06 - 2022-06-18 18:06 - 000000000 ____D C:\Users\Max\AppData\Roaming\LizardSystems 2022-06-18 18:06 - 2022-06-18 18:06 - 000000000 ____D C:\ProgramData\TEMP 2022-06-18 17:51 - 2022-06-18 17:52 - 000000000 ____D C:\Users\Max\AppData\Local\Apple Computer 2022-06-18 17:50 - 2022-06-18 17:50 - 000000000 ____D C:\Users\Max\AppData\Local\Apple 2022-06-18 17:50 - 2022-06-18 17:50 - 000000000 ____D C:\Program Files\Bonjour 2022-06-18 17:50 - 2022-06-18 17:50 - 000000000 ____D C:\Program Files (x86)\Bonjour 2022-06-18 13:03 - 2022-06-27 15:25 - 000000000 ____D C:\Users\Max\AppData\Local\ForzaHorizon5 2022-06-17 13:12 - 2022-06-17 13:12 - 000104448 _____ C:\WINDOWS\system32\nettraceex.dll 2022-06-17 13:12 - 2022-06-17 13:12 - 000011787 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2022-06-17 13:11 - 2022-06-17 13:11 - 002260480 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll 2022-06-17 13:11 - 2022-06-17 13:11 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll 2022-06-17 13:11 - 2022-06-17 13:11 - 000232288 _____ C:\WINDOWS\system32\containerdevicemanagement.dll 2022-06-17 12:57 - 2022-06-17 12:57 - 000000000 ___HD C:\$WinREAgent 2022-06-13 18:34 - 2022-06-13 18:35 - 000000000 ____D C:\Users\Max\AppData\Roaming\.minecraft_bedrock 2022-06-13 18:34 - 2022-06-13 18:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Minecraft Launcher 2022-06-13 18:32 - 2022-06-27 14:30 - 000000000 ____D C:\Program Files (x86)\Minecraft Bedrock Launcher 2022-06-13 18:31 - 2022-06-13 18:34 - 000000000 ____D C:\Users\Max\AppData\Local\CarJem_Generations 2022-06-13 17:44 - 2022-06-13 17:48 - 000000000 ____D C:\Users\Max\AppData\Local\ExpressVPN 2022-06-13 17:44 - 2022-06-13 17:44 - 000002332 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ExpressVPN.lnk 2022-06-13 17:44 - 2022-06-13 17:44 - 000002162 _____ C:\Users\Public\Desktop\ExpressVPN.lnk 2022-06-13 17:44 - 2022-06-13 17:44 - 000000000 ____D C:\ProgramData\ExpressVPN 2022-06-12 14:03 - 2022-06-12 14:03 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP 2022-06-12 14:03 - 2022-06-12 14:03 - 000000000 ____D C:\Program Files\HPPrintScanDoctor 2022-06-12 14:02 - 2022-06-12 14:02 - 000000000 ____D C:\Users\Max\AppData\LocalLow\Temp 2022-06-12 14:00 - 2022-06-24 15:11 - 000038032 _____ C:\WINDOWS\system32\Drivers\truesight.sys 2022-06-12 11:17 - 2022-06-12 11:17 - 000000000 ____D C:\Program Files\McAfee 2022-06-12 11:16 - 2022-06-12 11:16 - 000049992 ____N (Reason Software Company) C:\WINDOWS\system32\Drivers\ReasonCamFilter.sys 2022-06-12 11:15 - 2022-06-12 11:15 - 000000000 ____D C:\Users\Max\AppData\Local\BitTorrentHelper 2022-06-12 09:37 - 2022-06-24 15:14 - 000223176 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys 2022-06-09 18:06 - 2022-06-09 18:06 - 000000000 ____D C:\Program Files (x86)\Windows Kits 2022-06-09 18:06 - 2022-06-09 18:06 - 000000000 ____D C:\Program Files (x86)\Microsoft GameInput 2022-06-09 16:57 - 2022-06-09 16:57 - 000000028 _____ C:\WINDOWS\SysWOW64\autoscan.dll 2022-06-09 16:57 - 2022-06-09 16:57 - 000000000 ____D C:\Users\Max\AppData\Roaming\WinTools 2022-06-09 16:57 - 2022-06-09 16:57 - 000000000 ____D C:\Program Files (x86)\WinTools Software 2022-06-07 17:34 - 2022-06-07 17:34 - 000000000 ____D C:\Users\Max\Desktop\Antidote_10.5.1_F_41_Installation 2022-06-07 09:58 - 2022-06-07 17:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Antidote 2022-06-05 14:26 - 2022-06-05 14:26 - 000000000 ____D C:\ProgramData\Microsoft Toolkit 2022-06-05 14:20 - 2022-06-05 14:20 - 000000000 ____D C:\Users\Max\AppData\Roaming\SOLIDWORKS 2022-06-05 14:18 - 2022-06-05 14:18 - 000000000 ____D C:\Users\Public\Documents\AdobeGCInfo 2022-06-03 09:49 - 2021-09-16 11:55 - 000094600 _____ (Pango Inc) C:\WINDOWS\system32\Drivers\bdvpn_netfilter.sys 2022-05-31 19:40 - 2022-05-31 19:40 - 000000000 ____D C:\Users\Max\curseforge 2022-05-31 10:31 - 2022-05-31 10:31 - 000000000 ____D C:\ProgramData\FNP ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-06-27 17:11 - 2022-04-20 06:35 - 000003752 _____ C:\WINDOWS\system32\Tasks\AsusSystemAnalysis_754F3273-0563-4F20-B12F-826510B07474 2022-06-27 17:11 - 2021-10-25 07:28 - 000000000 ____D C:\ProgramData\NVIDIA 2022-06-27 17:09 - 2022-04-21 17:42 - 000000000 ____D C:\Program Files (x86)\Google 2022-06-27 17:09 - 2022-04-19 21:54 - 000000000 ___RD C:\Users\Max\OneDrive 2022-06-27 17:09 - 2022-04-19 21:53 - 000000000 __SHD C:\Users\Max\IntelGraphicsProfiles 2022-06-27 16:56 - 2022-04-20 06:20 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2022-06-27 16:29 - 2022-04-20 13:50 - 000000000 ____D C:\Program Files (x86)\Steam 2022-06-27 16:29 - 2022-04-20 07:12 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-06-27 16:28 - 2022-04-24 12:17 - 000000000 ____D C:\Users\Max\AppData\Roaming\discord 2022-06-27 16:20 - 2022-04-20 07:09 - 000065536 _____ C:\WINDOWS\system32\config\ELAM 2022-06-27 16:16 - 2022-04-20 07:12 - 000000000 ____D C:\WINDOWS\AppReadiness 2022-06-27 16:15 - 2022-04-24 12:17 - 000000000 ____D C:\Users\Max\AppData\Local\Discord 2022-06-27 16:15 - 2022-04-19 21:53 - 000000000 ____D C:\Users\Max\AppData\Local\D3DSCache 2022-06-27 15:33 - 2022-04-20 16:47 - 000000000 ____D C:\ProgramData\Apple 2022-06-27 15:32 - 2022-04-20 07:12 - 000000000 ___HD C:\Program Files\WindowsApps 2022-06-27 15:32 - 2022-04-19 21:53 - 000000000 ____D C:\Users\Max\AppData\Local\Packages 2022-06-27 15:29 - 2022-05-01 18:16 - 000000000 ____D C:\Program Files (x86)\EaseUS 2022-06-27 15:28 - 2022-05-20 22:17 - 000000000 ____D C:\Program Files (x86)\Epic Games 2022-06-27 15:10 - 2022-04-20 07:12 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2022-06-27 14:35 - 2022-04-21 15:36 - 000000000 ____D C:\Users\Max\AppData\Local\CrashDumps 2022-06-27 14:33 - 2022-04-25 14:27 - 000000000 ____D C:\Users\Max\AppData\Roaming\VMware 2022-06-27 14:33 - 2022-04-25 14:27 - 000000000 ____D C:\Users\Max\AppData\Local\VMware 2022-06-27 14:33 - 2022-04-19 21:53 - 000000000 ___RD C:\Users\Max\3D Objects 2022-06-27 14:28 - 2022-04-22 18:52 - 000000000 ____D C:\Users\Max\AppData\Roaming\.tlauncher 2022-06-27 14:28 - 2022-04-22 18:52 - 000000000 ____D C:\Users\Max\AppData\Roaming\.minecraft 2022-06-27 14:26 - 2022-04-24 13:14 - 000000000 ____D C:\Users\Max\AppData\Roaming\ChangZhi2 2022-06-27 14:26 - 2022-04-24 13:14 - 000000000 ____D C:\ChangZhi 2022-06-27 14:26 - 2022-04-20 07:12 - 000000000 ____D C:\WINDOWS\INF 2022-06-27 13:11 - 2022-05-23 20:41 - 000004172 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{06984948-9779-46A3-B0BA-3F5A1D9A515F} 2022-06-26 16:52 - 2022-04-20 07:14 - 000797210 _____ C:\WINDOWS\system32\perfh00C.dat 2022-06-26 16:52 - 2022-04-20 07:14 - 000151850 _____ C:\WINDOWS\system32\perfc00C.dat 2022-06-26 16:52 - 2022-04-20 06:38 - 001779188 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2022-06-26 14:42 - 2022-05-23 20:12 - 000000000 ____D C:\incoming qubittorent 2022-06-26 14:23 - 2022-04-19 21:53 - 000000000 ____D C:\Users\Max\AppData\Local\VirtualStore 2022-06-26 14:03 - 2022-04-24 13:18 - 000000000 ____D C:\Users\Max\.LdVirtualBox 2022-06-25 16:12 - 2022-04-20 07:12 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2022-06-25 16:12 - 2020-11-21 14:43 - 000000000 ____D C:\Program Files\Microsoft Office 2022-06-25 12:42 - 2022-04-20 07:12 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2022-06-25 12:42 - 2022-04-20 07:12 - 000000000 ____D C:\WINDOWS\ServiceState 2022-06-25 10:11 - 2022-04-19 21:53 - 000000000 ____D C:\ProgramData\Packages 2022-06-25 10:09 - 2022-04-20 06:21 - 000002444 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-06-24 15:26 - 2022-04-19 21:55 - 000000000 ____D C:\Users\Max\AppData\Local\PlaceholderTileLogoFolder 2022-06-24 15:14 - 2022-04-25 14:06 - 000239544 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2022-06-24 15:11 - 2022-04-25 14:25 - 000000000 ____D C:\ProgramData\VMware 2022-06-24 15:11 - 2022-04-20 07:09 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2022-06-24 15:11 - 2022-04-20 06:21 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2022-06-24 15:11 - 2022-04-20 06:20 - 000440304 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2022-06-24 15:11 - 2022-04-20 06:20 - 000008192 ___SH C:\DumpStack.log.tmp 2022-06-24 14:58 - 2022-04-20 07:12 - 000000000 ____D C:\Program Files\Common Files\System 2022-06-24 14:58 - 2019-12-07 11:14 - 000000076 _____ C:\WINDOWS\win.ini 2022-06-24 14:57 - 2021-10-25 07:28 - 000000000 ____D C:\ProgramData\Package Cache 2022-06-20 13:14 - 2022-04-24 12:17 - 000000000 ____D C:\Users\Max\AppData\Local\SquirrelTemp 2022-06-19 17:25 - 2022-04-19 21:49 - 000000000 ____D C:\Users\Max 2022-06-18 17:51 - 2022-05-01 18:17 - 000000000 ____D C:\Users\Max\AppData\Roaming\Apple Computer 2022-06-18 17:51 - 2022-04-20 16:47 - 000000000 ____D C:\ProgramData\Apple Computer 2022-06-18 17:41 - 2022-04-29 21:33 - 000000000 ____D C:\Users\Max\Documents\Virtual Machines 2022-06-17 14:49 - 2022-04-20 19:25 - 000000000 ____D C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2022-06-17 14:44 - 2022-04-20 07:12 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2022-06-17 14:44 - 2022-04-20 07:12 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV 2022-06-17 14:44 - 2022-04-20 07:12 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2022-06-17 14:44 - 2022-04-20 07:12 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE 2022-06-17 14:44 - 2022-04-20 07:12 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX 2022-06-17 14:44 - 2022-04-20 07:12 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2022-06-17 14:44 - 2022-04-20 07:12 - 000000000 ____D C:\WINDOWS\SystemResources 2022-06-17 14:44 - 2022-04-20 07:12 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences 2022-06-17 14:44 - 2022-04-20 07:12 - 000000000 ____D C:\WINDOWS\system32\oobe 2022-06-17 14:44 - 2022-04-20 07:12 - 000000000 ____D C:\WINDOWS\system32\lv-LV 2022-06-17 14:44 - 2022-04-20 07:12 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2022-06-17 14:44 - 2022-04-20 07:12 - 000000000 ____D C:\WINDOWS\system32\et-EE 2022-06-17 14:44 - 2022-04-20 07:12 - 000000000 ____D C:\WINDOWS\system32\es-MX 2022-06-17 14:44 - 2022-04-20 07:12 - 000000000 ____D C:\WINDOWS\system32\Dism 2022-06-17 14:44 - 2022-04-20 07:12 - 000000000 ____D C:\WINDOWS\system32\DDFs 2022-06-17 14:44 - 2022-04-20 07:12 - 000000000 ____D C:\WINDOWS\bcastdvr 2022-06-17 14:44 - 2022-04-20 07:09 - 000000000 ____D C:\WINDOWS\servicing 2022-06-17 13:15 - 2022-04-20 07:10 - 000000000 ____D C:\WINDOWS\CbsTemp 2022-06-17 13:11 - 2022-04-20 06:23 - 002877952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2022-06-17 13:06 - 2022-04-20 13:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2022-06-17 12:56 - 2022-04-20 09:49 - 000000000 ____D C:\WINDOWS\system32\MRT 2022-06-17 12:52 - 2022-04-20 09:48 - 145918784 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2022-06-16 16:10 - 2022-04-20 06:21 - 000003690 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-06-16 16:10 - 2022-04-20 06:21 - 000003566 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2022-06-14 17:32 - 2022-04-19 21:55 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3532310892-2074227971-806926255-1001 2022-06-14 17:32 - 2022-04-19 21:54 - 000003374 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3532310892-2074227971-806926255-1001 2022-06-14 17:32 - 2022-04-19 21:49 - 000002413 _____ C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2022-06-13 17:44 - 2022-05-23 19:59 - 000000000 ____D C:\Program Files (x86)\ExpressVPN 2022-06-12 14:01 - 2022-04-23 17:39 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2022-06-12 11:15 - 2022-04-23 17:39 - 000000000 ____D C:\Program Files\Google 2022-06-12 09:42 - 2022-04-23 13:36 - 000000445 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics 2022-06-09 18:06 - 2022-04-19 21:58 - 002762208 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll 2022-06-09 18:06 - 2022-04-19 21:58 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll 2022-06-09 18:04 - 2022-04-19 21:58 - 000402920 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll 2022-06-09 18:04 - 2022-04-19 21:58 - 000230864 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy.dll 2022-06-09 18:04 - 2022-04-19 21:58 - 000198112 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll 2022-06-09 18:04 - 2022-04-19 21:58 - 000136672 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll 2022-06-09 18:04 - 2022-04-19 21:58 - 000062928 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamemodcontrol.exe 2022-06-07 17:35 - 2022-05-05 20:28 - 000000000 ____D C:\Program Files (x86)\Druide 2022-06-07 09:44 - 2022-04-20 12:20 - 001262496 _____ (BitDefender S.R.L. Bucharest, ROMANIA) C:\WINDOWS\system32\Drivers\gemma.sys 2022-06-07 09:44 - 2022-04-20 12:20 - 000633264 _____ (Bitdefender) C:\WINDOWS\system32\Drivers\trufos.sys 2022-06-01 13:04 - 2022-04-19 21:53 - 000000000 ____D C:\Users\Max\AppData\Roaming\Adobe 2022-05-30 11:13 - 2022-04-25 14:06 - 000158640 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys ==================== Fichiers à la racine de certains dossiers ======== 2022-06-25 16:38 - 2022-06-25 16:38 - 000000000 _____ () C:\Program Files (x86)\test.txt 2022-04-24 13:18 - 2022-04-24 13:18 - 000000068 _____ () C:\Users\Max\AppData\Roaming\changzhi_leidian.data 2022-04-24 13:18 - 2022-04-24 13:18 - 000000154 _____ () C:\Users\Max\AppData\Roaming\changzhi_leidianmac.data 2022-04-25 16:56 - 2022-04-25 16:56 - 000000410 _____ () C:\Users\Max\AppData\Local\oobelibMkey.log ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================