Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 24-06-2022 01 Exécuté par user (administrateur) sur HP-PC (Hewlett-Packard HP ProBook 6460b) (25-06-2022 15:30:40) Exécuté depuis C:\Users\user\Downloads Profils chargés: user Plate-forme: Microsoft Windows 10 Professionnel Version 21H2 19044.1766 (X64) Langue: Français (France) Navigateur par défaut: Chrome Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (C:\Program Files (x86)\ArcGIS\License10.2\bin\lmgrd.exe ->) (Environmental Systems Research Institute Inc. -> ESRI) [Fichier non signé] C:\Program Files (x86)\ArcGIS\License10.2\bin\ARCGIS.exe (C:\Program Files\PostgreSQL\12\bin\pg_ctl.exe ->) (PostgreSQL Global Development Group) [Fichier non signé] C:\Program Files\PostgreSQL\12\bin\postgres.exe <8> (C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (explorer.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\hkcmd.exe (explorer.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxpers.exe (explorer.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxtray.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <20> (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.132\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.132\GoogleCrashHandler64.exe (hasplms.exe ->) (SafeNet Canada, Inc. -> SafeNet, Inc.) C:\Windows\System32\hasplmv.exe (Hewlett-Packard Company -> Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (Autodesk, Inc. -> Autodesk Inc.) C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AdAppMgrSvc.exe (services.exe ->) (Avago Technologies U.S. Inc. -> LSI Corporation) C:\Program Files\LSI SoftModem\agr64svc.exe (services.exe ->) (CrypKey (Canada) Ltd.) [Fichier non signé] C:\Windows\System32\Crypserv.exe (services.exe ->) (Environmental Systems Research Institute Inc. -> Flexera Software LLC) C:\Program Files (x86)\ArcGIS\License10.2\bin\lmgrd.exe <2> (services.exe ->) (Flexera Software LLC -> Flexera) C:\Program Files (x86)\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe (services.exe ->) (Flexera Software LLC -> Flexera) C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe (services.exe ->) (Hewlett-Packard Company -> Hewlett-Packard Company) C:\Windows\System32\hpservice.exe (services.exe ->) (Hewlett-Packard Company -> HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe (services.exe ->) (Hewlett-Packard Company) [Fichier non signé] C:\Program Files (x86)\HP\HPBDSService\HPBDSService.exe (services.exe ->) (Malwarebytes Corporation -> Malwarebytes) C:\ProgramData\MB3Install\MBAMIService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe <2> (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\NisSrv.exe (services.exe ->) (PostgreSQL Global Development Group) [Fichier non signé] C:\Program Files\PostgreSQL\12\bin\pg_ctl.exe (services.exe ->) (SafeNet Canada, Inc. -> SafeNet, Inc.) C:\Windows\System32\hasplms.exe (services.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe (services.exe ->) (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG) C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.SecHealthUI_cw5n1h2txyewy\SecHealthUI.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3944136 2015-07-03] (Synaptics Incorporated -> Synaptics Incorporated) HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [664848 2016-04-26] (Hewlett-Packard Company -> HP Inc.) HKLM-x32\...\Run: [Autodesk Desktop App] => C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AutodeskDesktopApp.exe [590464 2022-04-22] (Autodesk, Inc. -> Autodesk, Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [707256 2021-12-15] (Oracle America, Inc. -> Oracle Corporation) HKLM-x32\...\Run: [Autodesk Genuine Service ] => C:\ProgramData\Autodesk\Genuine Service\x64\GenuineService.exe [3439176 2022-01-25] (Autodesk, Inc. -> Autodesk) HKLM-x32\...\Run: [PWRISOVM.EXE] => C:\Program Files\PowerISO\PWRISOVM.EXE [460432 2021-11-04] (Power Software Limited -> Power Software Ltd) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [49208 2011-10-28] (Hewlett-Packard Company -> Hewlett-Packard) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [StatusAlerts] => C:\Program Files (x86)\HP\StatusAlerts\bin\HPStatusAlerts.exe [313248 2012-07-18] (Hewlett-Packard Company -> Hewlett-Packard Company) HKLM-x32\...\Run: [Intel Driver & Support Assistant] => C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe [288184 2022-05-09] (Intel Corporation -> Intel) HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION HKU\S-1-5-21-3373700318-2277539620-1870361017-1000\...\Run: [com.squirrel.Teams.Teams] => C:\Users\user\AppData\Local\Microsoft\Teams\Update.exe [2342544 2020-04-11] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKU\S-1-5-21-3373700318-2277539620-1870361017-1000\...\Run: [8042DBCBE0CC6F7D1E5DCD3935C9DB5EDE0B7F0B._service_run] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=service /prefetch:8 [3601824 2022-06-22] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3373700318-2277539620-1870361017-1000\...\Run: [Anticache] => C:\Users\user\AppData\Roaming\Anticache\AntiRaccourcies.exe (Pas de fichier) HKU\S-1-5-21-3373700318-2277539620-1870361017-1000\...\Run: [MicrosoftEdgeAutoLaunch_8714F0D917266FE3AFB7F8BB98EEBC18] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3601824 2022-06-22] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3373700318-2277539620-1870361017-1000\...\Policies\Explorer: [] HKU\S-1-5-21-3373700318-2277539620-1870361017-1002\...\Run: [MicrosoftEdgeAutoLaunch_F8EB95CB8EDB7FC68AC6A4F45EED2676] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3601824 2022-06-22] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3373700318-2277539620-1870361017-1002\...\MountPoints2: {e76c5274-b4a8-11ec-911d-a0b3cc22cd57} - "E:\Autorun.exe" HKLM\...\Windows x64\Print Processors\hpcpp117: C:\Windows\System32\spool\prtprocs\x64\hpcpp117.DLL [467456 2011-09-28] (Hewlett-Packard Corporation) [Fichier non signé] HKLM\...\Windows x64\Print Processors\hpcpp140: C:\Windows\System32\spool\prtprocs\x64\hpcpp140.DLL [559616 2012-09-28] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation) HKLM\...\Print\Monitors\HP Standard TCP/IP Port: C:\WINDOWS\system32\HpTcpMon.dll [331264 2009-09-16] (Hewlett Packard) [Fichier non signé] HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\102.0.5005.115\Installer\chrmstp.exe [2022-06-17] (Google LLC -> Google LLC) HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] -> GroupPolicy: Restriction - Windows Defender <==== ATTENTION Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {0B3370B0-F8EE-44F3-9A04-C5E09C261EE9} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [67472 2022-06-07] (Microsoft Corporation -> Microsoft Corporation) Task: {29238265-E5A3-418F-8389-7C4B2AD342C9} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23246768 2022-06-19] (Microsoft Corporation -> Microsoft Corporation) Task: {36DB0BD7-46F7-4AA0-ACB2-D4E50079583D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2203.5-0\MpCmdRun.exe [993000 2022-04-22] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {476C5BA6-512C-440B-BA47-8CF4EDC36A9A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2203.5-0\MpCmdRun.exe [993000 2022-04-22] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {486D715E-6AA2-44CF-BC48-B6990CBB53C6} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControlsMigration => {343D770D-7788-47C2-B62A-B7C4CED925CB} Task: {4DFB453C-162E-49F1-9586-3FE36F961A2E} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> Pas de fichier <==== ATTENTION Task: {5B42DD9C-5A26-4F27-BB95-34603F0997E5} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControls => {DFA14C43-F385-4170-99CC-1B7765FA0E4A} Task: {62F35474-4CC5-470F-8396-A6168E409EF7} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [8304072 2022-06-19] (Microsoft Corporation -> Microsoft Corporation) Task: {7CCACE5C-215F-427D-BC6E-0550E9916571} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23246768 2022-06-19] (Microsoft Corporation -> Microsoft Corporation) Task: {88E07BBC-96EB-4B53-97C8-F5EE8394F6A5} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144800 2022-06-19] (Microsoft Corporation -> Microsoft Corporation) Task: {996841B0-3A33-4D85-B003-54B34ED828E0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2203.5-0\MpCmdRun.exe [993000 2022-04-22] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {A66F9371-0DC6-46E5-BA6E-8D738989F7D3} - \AutoPico Daily Restart -> Pas de fichier <==== ATTENTION Task: {B0CBAB43-44FC-469B-A4CE-87426761FDCE} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371} Task: {B8C7255B-6AFE-4678-AA1F-21A29D3D2D32} - \{73BC909A-D208-41A4-84AE-4A119A5E44E4} -> Pas de fichier <==== ATTENTION Task: {C0F87610-8C07-421F-80F0-0797FEA0410D} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424 2021-11-17] (Adobe Inc. -> Adobe Inc.) Task: {C3BF4F3D-B648-46BB-BD3D-046B0145673E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-12-03] (Google Inc -> Google Inc.) Task: {C6602039-95FD-4F0F-9E68-A3B77B1557AA} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3373700318-2277539620-1870361017-1000UA => C:\Users\user\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler (Pas de fichier) Task: {CA79E2DA-BF8F-42D3-B941-84410BA85A8B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2203.5-0\MpCmdRun.exe [993000 2022-04-22] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {CB784012-A7F9-4CAA-95E9-FF374562AA50} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [8304072 2022-06-19] (Microsoft Corporation -> Microsoft Corporation) Task: {CCE79BCB-5E0A-426C-8F33-FF3EC9274749} - \Microsoft\Windows\UNP\RunCampaignManager -> Pas de fichier <==== ATTENTION Task: {D70244CE-DBB9-437E-97B3-774B20DC7076} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-12-03] (Google Inc -> Google Inc.) Task: {D70CBD8B-0059-420B-930B-D4C6BB34BBEC} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3373700318-2277539620-1870361017-1000Core => C:\Users\user\AppData\Local\Google\Update\GoogleUpdate.exe /c (Pas de fichier) Task: {D711C1B3-178E-464C-AC1A-6BD20D8C6296} - System32\Tasks\HPLJCustParticipation => C:\Program Files (x86)\HP\HPLJUT\HPLJUTSCH.exe [42912 2012-06-14] (Hewlett-Packard Company -> Hewlett Packard) Task: {D8A462AA-22EE-43EA-A524-83FC5797B880} - System32\Tasks\Avira_Antivirus_Systray => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe /min (Pas de fichier) Task: {DAC6D097-5921-4641-9A76-D4774CBEE87E} - \Microsoft\Windows\Setup\EOSNotify -> Pas de fichier <==== ATTENTION Task: {DC450FC7-E85A-4D5F-AFA6-E34D8CDE2FFE} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144800 2022-06-19] (Microsoft Corporation -> Microsoft Corporation) Task: {E7CDA1A1-4CA7-43E9-AA49-2992FD8B0F9A} - \SoftwareInformerService -> Pas de fichier <==== ATTENTION (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3: <==== ATTENTION (Restriction - Zones) ProxyServer: [S-1-5-21-3373700318-2277539620-1870361017-1000] => hxxp://vst01.edmsa.com:8080 Hosts: 127.0.0.1 keystone.mwbsys.com Tcpip\Parameters: [DhcpNameServer] 154.118.154.50 8.8.8.8 Tcpip\..\Interfaces\{6e24e9eb-f39c-4242-bac0-f0b145c8c3bd}: [NameServer] 8.8.8.8,8.8.4.4 Tcpip\..\Interfaces\{6e24e9eb-f39c-4242-bac0-f0b145c8c3bd}: [DhcpNameServer] 154.118.154.50 8.8.8.8 Edge: ======= DownloadDir: C:\Users\user\Downloads Edge Extension: (Adblock Plus) -> 10_EyeoGmbHAdblockPlus_d55gg7py3s0m0 => C:\Program Files\WindowsApps\EyeoGmbH.AdblockPlus_0.9.19.0_neutral__d55gg7py3s0m0 [2020-02-14] Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)] Edge Extension: (Pas de nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\WINDOWS\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [non trouvé(e)] Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)] Edge Extension: (Pas de nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\WINDOWS\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [non trouvé(e)] Edge DefaultProfile: Default Edge Profile: C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default [2022-06-25] Edge HomePage: Default -> hxxps://www.google.com/ Edge Extension: (Swift VPN) - C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bpedpmldadicceehkgfgpmnijinnegog [2022-06-03] Edge Extension: (Edge VPN - Free VPN Connection) - C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gceehepmbkhfnmppikiecepnmhheibla [2022-06-03] Edge Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gmgoamodcdcjnbaobigkjelfplakmdhh [2022-06-01] Edge Extension: (Jitsi Meetings) - C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kglhbbefdnlheedjiejgomgmfplipfeb [2022-05-08] Edge Extension: (VPN) - C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\pcjfldamhhadjbjdbipiogiabbglclio [2022-06-03] FireFox: ======== FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-04-10] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2022-04-07] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @java.com/DTPlugin,version=11.321.2 -> C:\Program Files (x86)\Java\jre1.8.0_321\bin\dtplugin\npDeployJava1.dll [2022-01-24] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.321.2 -> C:\Program Files (x86)\Java\jre1.8.0_321\bin\plugin2\npjp2.dll [2022-01-24] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-03-08] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @videolan.org/vlc,version=2.1.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN) FF Plugin HKU\S-1-5-21-3373700318-2277539620-1870361017-1000: eagleget.com/EagleGet32 -> C:\Program Files (x86)\EagleGet\npEagleget.dll [2017-12-03] (Beijing Jiupu Technology Co., Ltd. -> EagleGet) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\user\AppData\Local\Google\Chrome\User Data\Default [2022-06-19] CHR Notifications: Default -> hxxps://get.streamssitesearch.com; hxxps://meet.google.com CHR HomePage: Default -> hxxps://www.google.com/ CHR StartupUrls: Default -> "hxxp://footmercato.net/" CHR Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2022-06-19] CHR Extension: (Adobe Acrobat : outils de modification, de conversion et de signature de PDF) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2022-06-19] CHR Extension: (Google Docs hors connexion) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-04-19] CHR Extension: (EagleGet Free Downloader) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kaebhgioafceeldhgjmendlfhbfjefmo [2020-05-15] CHR Extension: (Jitsi Meetings) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\kglhbbefdnlheedjiejgomgmfplipfeb [2022-04-10] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-30] CHR Profile: C:\Users\user\AppData\Local\Google\Chrome\User Data\Guest Profile [2021-12-09] CHR HKLM\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] CHR HKLM\...\Chrome\Extension: [kaebhgioafceeldhgjmendlfhbfjefmo] - C:\Program Files (x86)\EagleGet\addon\eagleget_cext@eagleget.com.crx [2020-04-12] CHR HKU\S-1-5-21-3373700318-2277539620-1870361017-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [hdkdmoacnkphoadmfidlhfdobieblphn] - C:\Program Files (x86)\EagleGet\addon\eagleget_newtab.crx [2020-04-12] CHR HKU\S-1-5-21-3373700318-2277539620-1870361017-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [kaebhgioafceeldhgjmendlfhbfjefmo] - C:\Program Files (x86)\EagleGet\addon\eagleget_cext@eagleget.com.crx [2020-04-12] CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKLM-x32\...\Chrome\Extension: [hdkdmoacnkphoadmfidlhfdobieblphn] - C:\Program Files (x86)\EagleGet\addon\eagleget_newtab.crx [2020-04-12] CHR HKLM-x32\...\Chrome\Extension: [kaebhgioafceeldhgjmendlfhbfjefmo] - C:\Program Files (x86)\EagleGet\addon\eagleget_cext@eagleget.com.crx [2020-04-12] Brave: ======= BRA Profile: C:\Users\user\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2020-04-13] BRA Extension: (Adobe Acrobat) - C:\Users\user\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2020-03-23] BRA Extension: (i New Tab) - C:\Users\user\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\hdkdmoacnkphoadmfidlhfdobieblphn [2020-04-12] BRA Extension: (Brave Local Data Files Updater) - C:\Users\user\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2020-03-23] BRA Extension: (Brave Ad Block Updater (Default)) - C:\Users\user\AppData\Local\BraveSoftware\Brave-Browser\User Data\cffkpbalmllkdoenhmdmpbkajipdjfam [2020-04-13] BRA Extension: (Brave Tor Client Updater (Windows)) - C:\Users\user\AppData\Local\BraveSoftware\Brave-Browser\User Data\cpoalefficncklhjfpglfiplenlpccdb [2020-03-29] BRA Extension: (Brave NTP sponsored images) - C:\Users\user\AppData\Local\BraveSoftware\Brave-Browser\User Data\lcenblphbmngnohghkhpojmpflebkcpd [2020-04-12] BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\user\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2020-04-08] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdAppMgrSvc; C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AdAppMgrSvc.exe [1134720 2022-04-22] (Autodesk, Inc. -> Autodesk Inc.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-11-17] (Adobe Inc. -> Adobe Inc.) R2 AgereModemAudio; C:\Program Files\LSI SoftModem\agr64svc.exe [42096 2015-08-04] (Avago Technologies U.S. Inc. -> LSI Corporation) R2 ArcGIS License Manager; C:\Program Files (x86)\ArcGIS\License10.2\bin\lmgrd.exe [1452408 2014-02-13] (Environmental Systems Research Institute Inc. -> Flexera Software LLC) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11988384 2022-06-19] (Microsoft Corporation -> Microsoft Corporation) R2 Crypkey License; C:\WINDOWS\system32\crypserv.exe [122880 2008-05-07] (CrypKey (Canada) Ltd.) [Fichier non signé] S2 DSAService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe [39352 2022-05-09] (Intel Corporation -> Intel) S3 DSAUpdateService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe [184248 2022-05-09] (Intel Corporation -> Intel) S2 egGetSvc; C:\Program Files (x86)\EagleGet\EGMonitor.exe [338936 2019-08-12] (Beijing Pu Technology Limited -> ) R2 hasplms; C:\WINDOWS\system32\hasplms.exe [3500552 2018-07-18] (SafeNet Canada, Inc. -> SafeNet, Inc.) R2 HP DS Service; C:\Program Files (x86)\HP\HPBDSService\HPBDSService.exe [13824 2011-10-17] (Hewlett-Packard Company) [Fichier non signé] S2 HP LaserJet Service; C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe [164864 2012-05-02] (HP) [Fichier non signé] R2 HPWMISVC; C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [606224 2016-04-18] (Hewlett-Packard Company -> HP Inc.) S2 luminati_net_updater_win_eagleget_com; C:\Program Files (x86)\EagleGet\net_updater32.exe [2521024 2019-07-29] (Luminati Networks -> Luminati Networks Ltd.) R2 MBAMIService; C:\ProgramData\MB3Install\MBAMIService.exe [231120 2019-06-26] (Malwarebytes Corporation -> Malwarebytes) S2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [50688 2012-07-31] (Hewlett-Packard) [Fichier non signé] S2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [66048 2012-07-31] (Hewlett-Packard) [Fichier non signé] R2 postgresql-x64-12; C:\Program Files\PostgreSQL\12\bin\pg_ctl.exe [116736 2020-03-23] (PostgreSQL Global Development Group) [Fichier non signé] S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6254368 2022-06-19] (Microsoft Windows Publisher -> Microsoft Corporation) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2203.5-0\NisSrv.exe [3116848 2022-04-22] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2203.5-0\MsMpEng.exe [133544 2022-04-22] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) S3 dot4; C:\WINDOWS\system32\DRIVERS\Dot4.sys [146856 2013-06-04] (BoiseTest -> Windows (R) Win 7 DDK provider) S3 Dot4Print; C:\WINDOWS\System32\drivers\Dot4Prt.sys [21928 2013-06-04] (BoiseTest -> Windows (R) Win 7 DDK provider) S3 dot4usb; C:\WINDOWS\system32\DRIVERS\dot4usb.sys [43944 2013-06-04] (BoiseTest -> Microsoft Corporation) S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2019-08-20] (AVB Disc Soft, SIA -> Disc Soft Ltd) S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [59360 2019-08-20] (AVB Disc Soft, SIA -> Disc Soft Ltd) R3 eagleGet; C:\WINDOWS\System32\Drivers\eagleGet.sys [87192 2016-09-08] (Beijing Jiupu Technology Co., Ltd. -> eagleGet) R1 ElRawDisk; C:\WINDOWS\system32\drivers\rsdrvx64.sys [26024 2009-02-12] (EldoS Corporation -> EldoS Corporation) R2 hardlock; C:\WINDOWS\system32\drivers\hardlock.sys [1971208 2018-07-18] (SafeNet Canada, Inc. -> SafeNet, Inc.) R1 NetworkX; C:\WINDOWS\system32\ckldrv.sys [28664 2008-03-17] (CrypKey (Canada) Inc. -> ) S3 pelmouse; C:\WINDOWS\system32\DRIVERS\pelmouse.sys [26880 2016-07-11] (WDKTestCert idd,131110062695071623 -> TPMX Electronics Ltd.) S3 pelusblf; C:\WINDOWS\system32\DRIVERS\pelusblf.sys [33048 2016-07-11] (WDKTestCert idd,131110062695071623 -> ) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R3 ubohci; C:\WINDOWS\System32\drivers\ubohci.sys [132608 2012-10-05] (Microsoft Windows Hardware Compatibility Publisher -> Unibrain) R2 ubsbm; C:\WINDOWS\System32\drivers\ubsbm.sys [24064 2012-10-05] (Microsoft Windows Hardware Compatibility Publisher -> Unibrain) R2 ubumapi; C:\WINDOWS\System32\drivers\ubumapi.sys [92160 2012-10-05] (Microsoft Windows Hardware Compatibility Publisher -> Unibrain) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49600 2022-04-22] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [443664 2022-04-22] (Microsoft Windows -> Microsoft Corporation) S3 wdm_usb; C:\WINDOWS\system32\DRIVERS\usb2ser.sys [159936 2016-08-16] (NGO -> MBB) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [90384 2022-04-22] (Microsoft Windows -> Microsoft Corporation) S4 GSDriver; \SystemRoot\System32\drivers\GSDriver64.sys [X] U4 idsvc; pas de ImagePath ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-06-25 15:30 - 2022-06-25 15:33 - 000029705 _____ C:\Users\user\Downloads\FRST.txt 2022-06-25 15:27 - 2022-06-25 15:32 - 000000000 ____D C:\FRST 2022-06-25 15:25 - 2022-06-25 15:25 - 000000000 _____ C:\Users\user\Downloads\Non confirmé 693899.crdownload 2022-06-25 15:24 - 2022-06-25 15:26 - 002369024 _____ (Farbar) C:\Users\user\Downloads\FRST64.exe 2022-06-19 22:57 - 2022-06-19 22:57 - 000000004 ____H C:\ProgramData\cm-lock 2022-06-19 19:49 - 2022-06-19 19:49 - 000479744 _____ C:\WINDOWS\system32\AssignedAccessCsp.dll 2022-06-19 19:49 - 2022-06-19 19:49 - 000040960 _____ C:\WINDOWS\system32\uwfservicingapi.dll 2022-06-19 19:48 - 2022-06-19 19:48 - 000104448 _____ C:\WINDOWS\system32\nettraceex.dll 2022-06-19 19:47 - 2022-06-19 19:47 - 000011787 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2022-06-19 19:46 - 2022-06-19 19:46 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll 2022-06-19 19:44 - 2022-06-19 19:44 - 000232288 _____ C:\WINDOWS\system32\containerdevicemanagement.dll 2022-06-19 19:43 - 2022-06-19 19:43 - 002260480 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll 2022-06-19 15:28 - 2022-06-19 23:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GridinSoft Anti-Malware 2022-06-19 15:28 - 2022-06-19 15:28 - 000000000 ____D C:\ProgramData\GridinSoft 2022-06-19 15:24 - 2022-06-19 15:25 - 000989584 _____ (GridinSoft LLC) C:\Users\user\Downloads\install-antimalware-fix.exe 2022-06-19 01:55 - 2022-06-19 01:55 - 000000000 ___HD C:\$WinREAgent 2022-06-13 13:37 - 2022-06-13 13:38 - 000000000 ____D C:\Users\user\AppData\Local\Apps\Windows 7 USB DVD Download Tool 2022-06-13 13:37 - 2022-06-13 13:37 - 000002594 _____ C:\Users\user\Desktop\Windows 7 USB DVD Download Tool.lnk 2022-06-13 13:37 - 2022-06-13 13:37 - 000000000 ____D C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows 7 USB DVD Download Tool 2022-06-13 09:24 - 2022-06-13 09:25 - 000799327 _____ C:\Users\user\Downloads\plan d'action remise à niveau des ouvrages de distribution 10_06_2022 V DGAPT vc_IY.xlsx 2022-06-01 15:15 - 2022-06-01 15:15 - 000002253 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth Pro.lnk 2022-06-01 15:15 - 2022-06-01 15:15 - 000002241 _____ C:\Users\Public\Desktop\Google Earth Pro.lnk ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-06-25 15:35 - 2016-10-03 20:54 - 000000000 ____D C:\Program Files (x86)\Google 2022-06-25 15:34 - 2019-12-07 09:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-06-25 15:25 - 2019-12-07 09:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2022-06-25 15:16 - 2020-07-20 19:08 - 000000068 __RSH C:\WINDOWS\system32\Drivers\WUDFRd.winsecurity 2022-06-25 15:15 - 2018-08-20 23:56 - 000000000 ____D C:\ProgramData\Packages 2022-06-25 15:14 - 2020-07-20 19:08 - 000000068 __RSH C:\WINDOWS\system32\Drivers\WppRecorder.winsecurity 2022-06-25 04:52 - 2019-12-07 09:14 - 000000000 ___HD C:\Program Files\WindowsApps 2022-06-25 04:42 - 2020-09-08 00:29 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-06-25 04:37 - 2019-12-07 09:13 - 000000000 ____D C:\WINDOWS\INF 2022-06-25 04:27 - 2019-02-10 18:39 - 000000000 ____D C:\ProgramData\Autodesk 2022-06-19 23:23 - 2021-12-13 08:42 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3373700318-2277539620-1870361017-1000 2022-06-19 23:23 - 2020-08-29 22:16 - 000003358 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3373700318-2277539620-1870361017-1000 2022-06-19 23:23 - 2020-08-29 21:42 - 000002418 _____ C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2022-06-19 23:01 - 2020-08-29 21:58 - 002005126 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2022-06-19 23:01 - 2019-12-07 14:50 - 000866684 _____ C:\WINDOWS\system32\perfh00C.dat 2022-06-19 23:01 - 2019-12-07 14:50 - 000177998 _____ C:\WINDOWS\system32\perfc00C.dat 2022-06-19 22:55 - 2020-08-29 21:34 - 000636352 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2022-06-19 22:53 - 2020-08-29 22:16 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2022-06-19 22:53 - 2020-08-29 21:34 - 000008192 ___SH C:\DumpStack.log.tmp 2022-06-19 22:53 - 2020-04-12 17:44 - 000000000 ____D C:\Program Files (x86)\EagleGet 2022-06-19 22:53 - 2016-12-12 01:58 - 1476395008 ___SH C:\WINDOWS\懀Đ懰Đ眆ᝌ 2022-06-19 22:53 - 2016-12-12 01:58 - 1476395008 ___SH C:\WINDOWS\憰Đ眆懘Đ憴Đ眆ޠ 2022-06-19 22:53 - 2016-12-12 01:58 - 1476395008 ___SH C:\WINDOWS\㌌ 2022-06-19 22:53 - 2016-12-12 01:58 - 1476395008 ___SH C:\WINDOWS\ᝌ 2022-06-19 22:53 - 2016-12-12 01:58 - 1476395008 ___SH C:\WINDOWS\ޠ 2022-06-19 22:53 - 2016-12-12 01:58 - 1476395008 ___SH C:\WINDOWS\Ử 2022-06-19 22:53 - 2016-12-12 01:58 - 1342177280 ___SH C:\WINDOWS\﷠~﷐䁾ၢ묁ۭ摷ၢ蠁ၢ谁ၢ㰁ၢ䰁ԗ 2022-06-19 22:52 - 2019-12-07 09:03 - 001048576 _____ C:\WINDOWS\system32\config\BBI 2022-06-19 22:52 - 2016-05-30 13:44 - 000000000 ____D C:\WINDOWS\KJ 2022-06-19 22:49 - 2019-12-07 14:53 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2022-06-19 22:49 - 2019-12-07 09:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2022-06-19 22:49 - 2019-12-07 09:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV 2022-06-19 22:49 - 2019-12-07 09:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2022-06-19 22:49 - 2019-12-07 09:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE 2022-06-19 22:49 - 2019-12-07 09:14 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX 2022-06-19 22:49 - 2019-12-07 09:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2022-06-19 22:49 - 2019-12-07 09:14 - 000000000 ____D C:\WINDOWS\SystemResources 2022-06-19 22:49 - 2019-12-07 09:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences 2022-06-19 22:49 - 2019-12-07 09:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2022-06-19 22:49 - 2019-12-07 09:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV 2022-06-19 22:49 - 2019-12-07 09:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2022-06-19 22:49 - 2019-12-07 09:14 - 000000000 ____D C:\WINDOWS\system32\et-EE 2022-06-19 22:49 - 2019-12-07 09:14 - 000000000 ____D C:\WINDOWS\system32\es-MX 2022-06-19 22:49 - 2019-12-07 09:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2022-06-19 22:49 - 2019-12-07 09:14 - 000000000 ____D C:\WINDOWS\system32\DDFs 2022-06-19 22:49 - 2019-12-07 09:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2022-06-19 22:49 - 2019-12-07 09:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2022-06-19 22:49 - 2019-12-07 09:03 - 000000000 ____D C:\WINDOWS\servicing 2022-06-19 22:33 - 2020-08-29 21:34 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2022-06-19 20:40 - 2019-12-07 09:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2022-06-19 19:40 - 2020-08-29 21:39 - 002877952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2022-06-19 14:56 - 2022-04-22 15:34 - 000000000 ____D C:\Users\user\Desktop\OMT 2022-06-19 01:30 - 2016-12-11 17:27 - 000000000 ____D C:\Program Files\Microsoft Office 2022-06-19 01:23 - 2016-11-26 03:29 - 000000000 ____D C:\WINDOWS\system32\MRT 2022-06-19 01:12 - 2016-11-26 03:28 - 145918784 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2022-06-15 16:05 - 2018-03-24 20:18 - 000000000 ____D C:\Users\user\AppData\Local\Packages 2022-06-15 11:24 - 2022-04-22 16:08 - 000000000 ____D C:\Users\user\Desktop\SHP 2022-06-14 20:42 - 2016-05-30 13:48 - 000000000 ____D C:\Users\user\AppData\Roaming\vlc 2022-06-14 20:30 - 2020-03-03 12:32 - 000000000 ___RD C:\Users\user\Desktop\KML-KMZ 2022-06-14 20:29 - 2022-01-29 19:28 - 000000000 ___RD C:\Users\user\Desktop\Linux 2022-06-14 20:29 - 2020-10-11 16:13 - 000000000 ___RD C:\Users\user\Desktop\CRABT 2022-06-14 20:28 - 2019-05-11 14:44 - 000000000 ____D C:\Users\user\AppData\Roaming\WhatsApp 2022-06-14 20:26 - 2021-12-13 08:53 - 000000000 ____D C:\Users\user\AppData\Local\WhatsApp 2022-06-14 20:17 - 2022-05-10 21:38 - 000000000 ____D C:\Users\user\Desktop\Sanouna 2022-06-11 21:46 - 2022-04-02 14:43 - 000000000 ___RD C:\Users\nouho\OneDrive 2022-06-09 22:40 - 2019-02-18 23:39 - 000000000 ____D C:\Users\user\Desktop\ArcGIS 2022-06-08 00:57 - 2020-09-08 00:28 - 000003690 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-06-08 00:57 - 2020-09-08 00:28 - 000003566 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2022-06-06 01:55 - 2022-04-02 14:38 - 000000000 ____D C:\Users\nouho 2022-06-04 22:21 - 2020-09-25 15:08 - 000000000 ____D C:\WINDOWS\Minidump 2022-06-04 22:15 - 2022-04-02 14:38 - 000000000 ____D C:\Users\nouho\AppData\Local\Packages 2022-06-04 22:14 - 2022-04-02 14:45 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3373700318-2277539620-1870361017-1002 2022-06-04 22:14 - 2022-04-02 14:43 - 000003360 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3373700318-2277539620-1870361017-1002 2022-06-04 22:14 - 2022-04-02 14:38 - 000002421 _____ C:\Users\nouho\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2022-06-03 03:30 - 2019-10-27 22:28 - 000000000 ____D C:\Users\user\Desktop\Fichiers AutoCAD 2022-06-03 03:23 - 2019-02-10 19:41 - 000000000 ____D C:\ProgramData\FNP_DIR 2022-06-01 15:10 - 2017-02-21 18:32 - 000000000 ____D C:\Users\user\AppData\Local\ElevatedDiagnostics ==================== Fichiers à la racine de certains dossiers ======== 2020-04-11 18:55 - 2020-04-11 19:08 - 000000320 _____ () C:\Users\user\AppData\Roaming\debug.log 2017-07-25 18:19 - 2017-07-25 18:19 - 000000000 _____ () C:\Users\user\AppData\Local\{132BDCE9-6A69-41FD-A861-4970E8D9C3DC} ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================