Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 04-07-2022 Exécuté par Robert (administrateur) sur IANNONE (Gigabyte Technology Co., Ltd. B85M-DS3H) (05-07-2022 09:44:15) Exécuté depuis D:\Robert\Desktop Profils chargés: Robert Plate-forme: Microsoft Windows 10 Famille Version 1803 17134.1345 (X64) Langue: Français (France) Navigateur par défaut: Edge Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe (C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpsystray.exe ->) (RealNetworks, Inc. -> RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\rpbgdownloader.exe (C:\Windows\SysWOW64\cmd.exe ->) (Safer Networking Ltd. -> Safer Networking Limited) C:\Users\Robert\AppData\Local\Temp\HBCD\SpybotSD\SpybotSD.exe (explorer.exe ->) () [Fichier non signé] C:\Program Files\TRENDnet\TEW-649UB\WlanCU.exe (explorer.exe ->) (hxxp://www.hiren.info) [Fichier non signé] E:\HBCD\HBCDMenu.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <30> (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\WINWORD.EXE (explorer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (explorer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (explorer.exe ->) (RealNetworks, Inc. -> RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpsystray.exe (explorer.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe (nvvsvc.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (RealNetworks, Inc. -> ) C:\Program Files (x86)\Real\RealPlayer\downloader2.exe (RealNetworks, Inc. -> RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe (services.exe ->) () [Fichier non signé] C:\Program Files\TRENDnet\TEW-649UB\WlanWpsSvc.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (services.exe ->) (Hewlett-Packard Company -> Hewlett-Packard Company) C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe (services.exe ->) (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (services.exe ->) (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (services.exe ->) (Intel(R) Corporation) [Fichier non signé] C:\Program Files\Intel\iCLS Client\HeciServer.exe (services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe <2> (services.exe ->) (NortonLifeLock Inc. -> NortonLifelock Inc.) C:\Program Files\Norton Security\Engine\22.22.6.10\NortonSecurity.exe <2> (services.exe ->) (NortonLifeLock Inc. -> NortonLifeLock Inc.) C:\Program Files\Norton Security\Engine\22.22.6.10\nsWscSvc.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe <2> (services.exe ->) (RealNetworks, Inc. -> RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpdsvc.exe (services.exe ->) (RealNetworks, Inc. -> RealNetworks, Inc.) C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12107.1001.15.0_x64__8wekyb3d8bbwe\WinStore.App.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wscript.exe (svchost.exe ->) (Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.56.102.0_x64__kzf8qxf38zg5c\SkypeApp.exe (svchost.exe ->) (Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.56.102.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-12] (Microsoft Windows -> Microsoft Corporation) HKLM\...\Run: [HotKeysCmds] => "C:\Windows\system32\hkcmd.exe" (Pas de fichier) HKLM\...\Run: [Persistence] => "C:\Windows\system32\igfxpers.exe" (Pas de fichier) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13423688 2013-02-26] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [286704 2013-04-30] (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [1793736 2015-02-20] (NVIDIA Corporation -> NVIDIA Corporation) HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [134616 2013-04-11] (Intel Corporation - Software and Firmware Products -> Intel Corporation) HKLM-x32\...\Run: [USB3MON] => "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" (Pas de fichier) HKLM-x32\...\Run: [RealDownloader] => c:\program files (x86)\real\realplayer\downloader2.exe [1188136 2020-11-11] (RealNetworks, Inc. -> ) HKLM-x32\...\Run: [TkBellExe] => c:\program files (x86)\real\realplayer\Update\realsched.exe [353064 2020-11-11] (RealNetworks, Inc. -> RealNetworks, Inc.) HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION HKU\S-1-5-21-212395072-253629970-2600101307-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\Mystify.scr [149504 2018-04-12] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-21-212395072-253629970-2600101307-1001\...\Run: [Sidebar] => %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (Pas de fichier) HKLM\...\Windows x64\Print Processors\hpzpplhn: C:\Windows\System32\spool\prtprocs\x64\hpzpplhn.dll [99840 2008-05-07] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation) HKLM\...\Windows x64\Print Processors\hpzppwn7: C:\Windows\System32\spool\prtprocs\x64\hpzppwn7.dll [101376 2009-07-14] (Hewlett-Packard Corporation) [Fichier non signé] HKLM\...\Print\Monitors\HP Discovery Port Monitor (HP DeskJet 3630 series): C:\WINDOWS\system32\HPDiscoPME311.dll [803848 2015-04-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP) HKLM\...\Print\Monitors\HP E311 Status Monitor: C:\WINDOWS\system32\hpinkstsE311LM.dll [392200 2019-03-15] (HP Inc -> HP Inc.) HKLM\...\Print\Monitors\IppMon: C:\WINDOWS\system32\IPPMon.dll [251392 2018-04-12] (Microsoft Windows -> Microsoft Corporation) HKLM\...\Print\Monitors\LIDIL hpzlllhn: C:\WINDOWS\system32\hpzlllhn.dll [48640 2008-05-07] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Company) HKLM\...\Print\Monitors\PCL hpz3lwn7: C:\WINDOWS\system32\hpz3lwn7.dll [36352 2009-07-14] (Hewlett-Packard Company) [Fichier non signé] HKLM\...\Print\Monitors\QC hpvqclm01: C:\WINDOWS\system32\hpvqclm01.dll [131072 2009-05-31] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Company) HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] -> Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\RealTimes.lnk [2020-11-11] ShortcutTarget: RealTimes.lnk -> C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpsystray.exe (RealNetworks, Inc. -> RealNetworks, Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Wireless Configuration Utility.lnk [2017-05-30] ShortcutTarget: Wireless Configuration Utility.lnk -> C:\Program Files\TRENDnet\TEW-649UB\WlanCU.exe () [Fichier non signé] Startup: C:\Users\Robert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facture.vbs [2017-05-06] () <==== ATTENTION [zéro octet Fichier/Dossier] ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {046DE0A4-94C1-4E0D-AA5D-AC2A35565845} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -PvrRecoveryTask (Pas de fichier) Task: {0C90FB0F-5665-44EB-8550-88B6EBFE5421} - System32\Tasks\Norton 360\Norton 360 Error Processor => C:\Program Files\Norton Security\Engine\22.22.6.10\SymErr.exe [110776 2022-06-27] (NortonLifeLock Inc. -> NortonLifeLock Inc.) Task: {10234D07-6E69-4ACB-B3B9-74DE9479A88E} - System32\Tasks\Microsoft\Windows\End Of Support\Notify1 => C:\WINDOWS\system32\sipnotify.exe -LogonOrUnlock (Pas de fichier) Task: {127E772A-C662-4F5C-A380-74167610B629} - System32\Tasks\Remediation\AntimalwareMigrationTask => C:\Program Files\Common Files\AV\Norton 360\Upgrade.exe [2353000 2022-06-27] (NortonLifeLock Inc. -> NortonLifeLock Inc.) Task: {13144583-F91A-444E-913E-DA89743AED9A} - System32\Tasks\Client Monitor => C:\ProgramData\pilot-ssl\pilot-c.exe /startup (Pas de fichier) Task: {171868E6-10FB-47D5-BC85-3ED4B752DB86} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316} Task: {18EB0607-29D0-4CF7-B160-BDFC399EEC51} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-212395072-253629970-2600101307-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe /logoncheck (Pas de fichier) Task: {1BCBED5F-C310-4BEA-9B12-01E1DB7CAEE6} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe /DoActivateWindowsSearch (Pas de fichier) Task: {23BBD5BB-B903-4D63-8298-BD1F824B5265} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe /DoConfigureInternetTimeService (Pas de fichier) Task: {266FB197-86BF-4601-845B-CEAB3836B937} - System32\Tasks\Mozilla\Firefox Background Update E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\E7CF176E110C211B\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {360C6FC2-9557-42DF-9E07-93D4CFC1D77A} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0) (Pas de fichier) Task: {4454EC47-97BB-4BB8-81A8-7249E70E5A09} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe /DRMInit (Pas de fichier) Task: {45C827D7-CE90-4D04-A8C5-212B281D2AE3} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [973744 2022-04-28] (Microsoft Corporation -> Microsoft Corporation) Task: {46AC0F83-B25B-47E9-88C3-DFD526BF045B} - System32\Tasks\Norton Internet Security\Norton Internet Security Error Processor => C:\Program Files\Norton Security\Engine\22.19.8.65\SymErr.exe /submit (Pas de fichier) Task: {486D715E-6AA2-44CF-BC48-B6990CBB53C6} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControlsMigration => {343D770D-7788-47c2-B62A-B7C4CED925CB} Task: {4B6A1CC2-91A1-4219-83DE-B1A67196BB46} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe /StartRecording (Pas de fichier) Task: {4D460EB5-D483-4EB3-AE23-48B3D1890134} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe -PvrSchedule (Pas de fichier) Task: {4F16F099-6CE7-4A98-A3A6-1636E566F28D} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424 2021-11-18] (Adobe Inc. -> Adobe Inc.) Task: {5B42DD9C-5A26-4F27-BB95-34603F0997E5} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControls => {DFA14C43-F385-4170-99CC-1B7765FA0E4A} Task: {5FED40E6-B7E9-4894-9CE4-68DC70BD91F4} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-212395072-253629970-2600101307-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe /scheduledcheck (Pas de fichier) Task: {6D7D95AD-6630-46D4-A985-E0D1B5138D30} - \Microsoft\Windows\Setup\EOSNotify -> Pas de fichier <==== ATTENTION Task: {6F8AEA84-B9E6-42C1-B81D-DC741E63842C} - System32\Tasks\Norton 360\Norton 360 Autofix => C:\Program Files\Norton Security\Engine\22.22.6.10\SymErr.exe [110776 2022-06-27] (NortonLifeLock Inc. -> NortonLifeLock Inc.) Task: {792BA3F6-8AB0-4C83-AFF9-83E4613B4C7C} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe -pscn 0 (Pas de fichier) Task: {7B51973C-E0CC-4016-9462-C2A2150B8447} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0) (Pas de fichier) Task: {7B8477D7-ECCF-4B8A-9582-226382B8652D} - System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe do-task "E7CF176E110C211B" Task: {81841B1C-5ABE-4451-BDEE-8E575311D880} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -SqlLiteRecoveryTask (Pas de fichier) Task: {84EFCBCC-1B02-410A-B3B8-6843F4670629} - System32\Tasks\Norton WSC Integration => C:\Program Files\Norton Security\Engine\22.22.6.10\WSCStub.exe [646520 2022-06-27] (NortonLifeLock Inc. -> NortonLifeLock Inc.) Task: {86F15302-FF5E-4BEB-9A4E-51E0E4A1E81B} - System32\Tasks\Microsoft\Windows\End Of Support\Notify2 => C:\WINDOWS\system32\sipnotify.exe -Daily (Pas de fichier) Task: {8AECE525-3466-4E4D-977C-DDE8C63CABE5} - System32\Tasks\RealDownloader Update Check => c:\program files (x86)\real\realplayer\downloader2.exe [1188136 2020-11-11] (RealNetworks, Inc. -> ) Task: {8F5097F3-FC45-4EEC-B5A2-46DB4C89BA93} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43da-BFD7-FBEEA2180A1E} Task: {94A2E06C-01D5-4B8F-A814-E3324EA0876D} - System32\Tasks\Norton 360\Norton 360 Error Analyzer => C:\Program Files\Norton Security\Engine\22.22.6.10\SymErr.exe [110776 2022-06-27] (NortonLifeLock Inc. -> NortonLifeLock Inc.) Task: {95777392-28E9-41AC-A587-2192A60DEFD0} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery (Pas de fichier) Task: {9CB74DC9-DBDB-461E-97C4-B0A3E67F841D} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDfE067B1} Task: {A091D00A-0131-46AE-98CE-D112519AE507} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe $(Arg0) (Pas de fichier) Task: {A6FD91E2-D8D4-4CD5-9E7E-75F7E298F477} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -MediaCenterRecoveryTask (Pas de fichier) Task: {B01A2648-FF6D-42A7-B087-F10D8AC0FCE7} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery (Pas de fichier) Task: {B0CBAB43-44FC-469B-A4CE-87426761FDCE} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40b4-8963-D3C761B18371} Task: {BA86C01C-43E7-44E4-A735-2DD14C9A0092} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [973744 2022-04-28] (Microsoft Corporation -> Microsoft Corporation) Task: {BAA4CFF4-31A3-4D22-A9E3-03D071277ADB} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe /OCURActivate (Pas de fichier) Task: {C0375296-1409-4BB3-9FC4-9D0C8B42DC0D} - System32\Tasks\HPEA3JOBS => C:\Program [Argument = Files\HP\HP ePrint\hpeprint.exe /CheckJobs] Task: {C6875098-026C-49F3-86CD-379E514A134A} - System32\Tasks\Norton Internet Security\Norton Internet Security Error Analyzer => C:\Program Files\Norton Security\Engine\22.19.8.65\SymErr.exe /analyze (Pas de fichier) Task: {CA6A6A47-FDDA-46D1-AEF1-B70F40415608} - System32\Tasks\Skype => C:\Users\Robert\AppData\Local\Temp\Facture.vbs (Pas de fichier) <==== ATTENTION Task: {D0E89270-B404-4A99-A3C5-7A52499E829B} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969} Task: {D43404EF-3107-4648-A659-BD87D98ED2FA} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0) (Pas de fichier) Task: {D8686ED9-E207-4A8B-9D31-7D5A34D90665} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe /RestartRecording (Pas de fichier) Task: {DC57DA1C-E77C-454D-A79C-0C37A046F24B} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0) (Pas de fichier) Task: {DF79C097-E535-4146-A22D-15E741464A86} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe /PBDADiscovery (Pas de fichier) Task: {E0914F86-CD42-4640-83C0-1BC63A923D96} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe -crl -hms -pscn 15 (Pas de fichier) Task: {E11D90FE-E5ED-4CC5-B083-F827D3CEFEE7} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe /DoReindexSearchRoot (Pas de fichier) Task: {E5FF0569-02F6-4E4D-926A-06A38C5AC134} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -ObjectStoreRecoveryTask (Pas de fichier) Task: {F2BEB5D3-5801-4927-9206-774C3874EED3} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [561984 2011-06-01] (Apple Inc. -> Apple Inc.) Task: {F41B8A47-2C32-4472-873F-6C09C69EE017} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0) (Pas de fichier) Task: {F4964FD2-534A-4153-9CBC-64D0EB38D1DA} - \Microsoft\Windows\Setup\EOSNotify2 -> Pas de fichier <==== ATTENTION Task: {F669B746-09E8-4006-AEE6-8777EE786BB7} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4f47-879B-29A80C355D61} (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{94B2800F-BD72-44A9-AB87-1717735D4762}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{C4FAFDAE-AC32-4BFE-A2FA-99166C3F704F}: [DhcpNameServer] 192.168.1.1 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\Robert\AppData\Local\Microsoft\Edge\User Data\Default [2022-07-05] Edge HomePage: Default -> hxxp://go.microsoft.com/fwlink/?LinkId=69157 Edge StartupUrls: Default -> "hxxp://www.orange.fr/" FireFox: ======== FF DefaultProfile: pls4payr.default FF ProfilePath: C:\Users\Robert\AppData\Roaming\Mozilla\Firefox\Profiles\pls4payr.default [2022-07-02] FF Homepage: Mozilla\Firefox\Profiles\pls4payr.default -> hxxp://www.orange.fr/portail FF SearchPlugin: C:\Users\Robert\AppData\Roaming\Mozilla\Firefox\Profiles\pls4payr.default\searchplugins\orange.xml [2015-07-16] FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext => non trouvé(e) FF Plugin-x32: @canon.com/MycameraPlugin -> C:\Program Files (x86)\Canon\MyCamera Download Plugin\NPCIG.dll [2008-10-15] (CANON INC.) [Fichier non signé] FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.0.72 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-04-11] (Intel® Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-04-11] (Intel® Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2014-03-15] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @real.com/nppl3260;version=20.0.2.314 -> c:\program files (x86)\real\realplayer\Netscape6\nppl3260.dll [2020-11-11] (RealNetworks, Inc. -> RealNetworks, Inc.) FF Plugin-x32: @real.com/nprpplugin;version=20.0.2.314 -> c:\program files (x86)\real\realplayer\Netscape6\nprpplugin.dll [2020-11-11] (RealNetworks, Inc. -> RealPlayer) FF Plugin-x32: @videolan.org/vlc,version=2.0.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-02-05] (VideoLAN) [Fichier non signé] FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-02-05] (VideoLAN) [Fichier non signé] FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2022-06-05] (Adobe Inc. -> Adobe Systems Inc.) Chrome: ======= CHR HKLM\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files\Norton Security\Engine\22.22.6.10\Exts\Chrome.crx CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-11-18] (Adobe Inc. -> Adobe Inc.) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [3054520 2022-04-28] (Microsoft Corporation -> Microsoft Corporation) R3 DCVssEaseusProvider; C:\Windows\system32\dllhost.exe /Processid:{98446FA2-B265-47E2-BC30-A27B9F9EFC72} [20888 2018-04-12] (Microsoft Windows -> Microsoft Corporation) R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe [47416 2014-02-05] (Hewlett-Packard Company -> Hewlett-Packard Company) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [731648 2013-02-13] (Intel(R) Corporation) [Fichier non signé] S3 NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [271920 2007-05-08] (Nero AG -> Nero AG) R2 NortonSecurity; C:\Program Files\Norton Security\Engine\22.22.6.10\NortonSecurity.exe [344888 2022-06-27] (NortonLifeLock Inc. -> NortonLifelock Inc.) R2 nsWscSvc; C:\Program Files\Norton Security\Engine\22.22.6.10\nsWscSvc.exe [1059176 2022-06-27] (NortonLifeLock Inc. -> NortonLifeLock Inc.) R2 RealPlayerUpdateSvc; C:\program files (x86)\real\UpdateService\RealPlayerUpdateSvc.exe [38536 2020-10-21] (RealNetworks, Inc. -> RealNetworks, Inc.) R2 RealTimes Desktop Service; c:\program files (x86)\real\realplayer\RPDS\Bin\rpdsvc.exe [990856 2020-11-11] (RealNetworks, Inc. -> RealNetworks, Inc.) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4413440 2022-07-04] (Microsoft Corporation -> Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [107160 2022-07-04] (Microsoft Corporation -> Microsoft Corporation) R2 WlanWpsSvc; C:\Program Files\TRENDnet\TEW-649UB\WlanWpsSvc.exe [167936 2008-06-26] () [Fichier non signé] S2 nvUpdatusService; "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe" [X] S2 Stereo Service; "C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe" [X] ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R1 BHDrvx64; C:\Program Files\Norton Security\NortonData\22.19.8.65\Definitions\BASHDefs\20220630.011\BHDrvx64.sys [1672160 2022-06-07] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R1 ccSet_NGC; C:\WINDOWS\System32\drivers\NGCx64\1616060.00A\ccSetx64.sys [196872 2022-06-27] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [527864 2022-06-11] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [159720 2022-06-25] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R0 EUDSKCP; C:\WINDOWS\System32\drivers\EUDSKCP.sys [76936 2022-03-15] (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd) R1 EUEUMDK; C:\Windows\system32\drivers\EUEUMDK.sys [24200 2022-03-15] (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd) R1 IDSVia64; C:\Program Files\Norton Security\NortonData\22.19.8.65\Definitions\IPSDefs\20220701.061\IDSvia64.sys [1515496 2022-06-11] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) S3 nsvst_NGC; C:\WINDOWS\System32\drivers\NGCx64\1616060.00A\nsvst.sys [57104 2022-06-27] (NortonLifeLock Inc. -> NortonLifeLock Inc.) R3 SRTSP; C:\WINDOWS\System32\drivers\NGCx64\1616060.00A\SRTSP64.SYS [954648 2022-06-27] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R1 SRTSPX; C:\WINDOWS\System32\drivers\NGCx64\1616060.00A\SRTSPX64.SYS [51456 2022-06-27] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R0 SymEFASI; C:\WINDOWS\System32\drivers\NGCx64\1616060.00A\SYMEFASI64.SYS [2091272 2022-06-27] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) S0 SymELAM; C:\WINDOWS\System32\drivers\NGCx64\1616060.00A\SymELAM.sys [34624 2022-06-27] (Microsoft Windows Early Launch Anti-malware Publisher -> Broadcom) R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [100320 2022-05-25] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R3 SymEvnt; C:\Program Files\Norton Security\NortonData\22.19.8.65\SymPlatform\SymEvnt.sys [712432 2021-07-13] (Symantec Corporation -> Symantec Corporation) R1 SymIRON; C:\WINDOWS\System32\drivers\NGCx64\1616060.00A\Ironx64.SYS [305416 2022-06-27] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R1 SymNetS; C:\WINDOWS\System32\drivers\NGCx64\1616060.00A\symnets.sys [481272 2022-06-27] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R3 SymTAP; C:\WINDOWS\System32\drivers\SymTAP.sys [52104 2018-10-16] (Symantec Corporation -> The OpenVPN Project) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44616 2018-04-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [331680 2018-04-12] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [44032 2018-04-12] (Microsoft Windows -> Microsoft Corporation) R1 wpCtrlDrv_NGC; C:\WINDOWS\System32\drivers\NGCx64\1616060.00A\wpCtrlDrv.sys [1016792 2022-06-27] (NortonLifeLock Inc. -> NortonLifeLock Inc.) U3 idsvc; pas de ImagePath ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-07-05 09:43 - 2022-07-05 09:44 - 000000000 ____D C:\FRST 2022-07-05 09:29 - 2022-07-05 09:29 - 000000000 ____D C:\ProgramData\Spybot - Search & Destroy 2022-07-05 09:17 - 2022-07-05 09:17 - 000000000 ____D C:\WINDOWS\system32\Tasks\Remediation 2022-07-04 23:20 - 2022-07-04 22:42 - 000000000 ____D C:\Windows.old 2022-07-04 23:17 - 2022-07-04 23:17 - 000000000 ____D C:\WINDOWS\ServiceProfiles 2022-07-04 23:17 - 2022-07-04 23:17 - 000000000 ____D C:\Program Files\Common Files\SpeechEngines 2022-07-04 23:15 - 2022-07-04 23:15 - 000008192 _____ C:\WINDOWS\system32\config\userdiff 2022-07-04 23:11 - 2022-07-04 23:11 - 000000000 ____D C:\ProgramData\USOShared 2022-07-04 23:09 - 2022-07-04 23:09 - 000249856 _____ (Gracenote, Inc.) C:\WINDOWS\SysWOW64\gnsdk_fp.dll 2022-07-04 23:08 - 2022-07-04 23:08 - 001324544 _____ C:\WINDOWS\system32\FaceProcessor.dll 2022-07-04 23:08 - 2022-07-04 23:08 - 000810496 _____ C:\WINDOWS\system32\MBR2GPT.EXE 2022-07-04 23:08 - 2022-07-04 23:08 - 000806328 _____ C:\WINDOWS\SysWOW64\locale.nls 2022-07-04 23:08 - 2022-07-04 23:08 - 000806328 _____ C:\WINDOWS\system32\locale.nls 2022-07-04 23:08 - 2022-07-04 23:08 - 000558808 _____ C:\WINDOWS\system32\FaceProcessorCore.dll 2022-07-04 23:08 - 2022-07-04 23:08 - 000421376 _____ (curl, hxxps://curl.haxx.se/) C:\WINDOWS\system32\curl.exe 2022-07-04 23:08 - 2022-07-04 23:08 - 000396304 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2022-07-04 23:08 - 2022-07-04 23:08 - 000322576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2022-07-04 23:08 - 2022-07-04 23:08 - 000141312 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe 2022-07-04 23:08 - 2022-07-04 23:08 - 000058882 _____ C:\WINDOWS\system32\srms.dat 2022-07-04 23:08 - 2022-07-04 23:08 - 000052736 _____ C:\WINDOWS\system32\runexehelper.exe 2022-07-04 23:08 - 2022-07-04 23:08 - 000046592 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2022-07-04 23:08 - 2022-07-04 23:08 - 000038912 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2022-07-04 23:07 - 2022-07-04 23:07 - 000001314 _____ C:\WINDOWS\system32\tcbres.wim 2022-07-04 23:07 - 2022-07-04 23:07 - 000000072 _____ C:\WINDOWS\system32\edgehtmlpluginpolicy.bin 2022-07-04 23:02 - 2022-07-05 08:59 - 000000000 ____D C:\ProgramData\Packages 2022-07-04 22:58 - 2022-07-04 22:58 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2022-07-04 22:58 - 2022-07-04 22:58 - 000000000 ____D C:\WINDOWS\SysWOW64\BestPractices 2022-07-04 22:58 - 2022-07-04 22:58 - 000000000 ____D C:\WINDOWS\system32\msmq 2022-07-04 22:58 - 2022-07-04 22:58 - 000000000 ____D C:\WINDOWS\system32\BestPractices 2022-07-04 22:58 - 2022-07-04 22:58 - 000000000 ____D C:\Program Files\Reference Assemblies 2022-07-04 22:58 - 2022-07-04 22:58 - 000000000 ____D C:\Program Files\MSBuild 2022-07-04 22:58 - 2022-07-04 22:58 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2022-07-04 22:58 - 2022-07-04 22:58 - 000000000 ____D C:\Program Files (x86)\MSBuild 2022-07-04 22:58 - 2022-07-04 22:58 - 000000000 ____D C:\inetpub 2022-07-04 22:57 - 2017-10-29 19:03 - 000076060 _____ C:\WINDOWS\system32\xpsrchvw.xml 2022-07-04 22:57 - 2017-10-29 17:42 - 000076060 _____ C:\WINDOWS\SysWOW64\xpsrchvw.xml 2022-07-04 22:53 - 2022-07-04 22:53 - 000003584 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-212395072-253629970-2600101307-1000 2022-07-04 22:53 - 2022-07-04 22:53 - 000003362 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-212395072-253629970-2600101307-1000 2022-07-04 22:52 - 2022-07-04 22:52 - 000000000 ____D C:\Users\Robert\AppData\Local\Comms 2022-07-04 22:49 - 2022-07-05 09:19 - 000000000 ____D C:\Users\Robert\AppData\Local\PlaceholderTileLogoFolder 2022-07-04 22:48 - 2022-07-04 22:48 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2022-07-04 22:45 - 2022-07-04 22:45 - 000000000 ____D C:\Users\Robert\AppData\Local\Publishers 2022-07-04 22:44 - 2022-07-04 22:44 - 000000000 __RHD C:\Users\Public\AccountPictures 2022-07-04 22:44 - 2022-07-04 22:44 - 000000000 ___RD C:\Users\Robert\3D Objects 2022-07-04 22:43 - 2022-07-05 08:51 - 000000000 ____D C:\Users\Robert\AppData\Local\Packages 2022-07-04 22:43 - 2022-07-05 08:40 - 000000000 __SHD C:\Users\Robert\IntelGraphicsProfiles 2022-07-04 22:43 - 2022-07-04 22:44 - 000000000 ____D C:\Users\Robert\AppData\Local\ConnectedDevicesPlatform 2022-07-04 22:43 - 2022-07-04 22:43 - 000000020 ___SH C:\Users\Robert\ntuser.ini 2022-07-04 22:42 - 2022-07-05 09:05 - 000000000 ____D C:\WINDOWS\system32\Tasks\Norton 360 2022-07-04 22:41 - 2022-07-05 08:40 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2022-07-04 22:41 - 2022-07-04 22:42 - 000003700 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-07-04 22:41 - 2022-07-04 22:42 - 000003586 _____ C:\WINDOWS\system32\Tasks\Skype 2022-07-04 22:41 - 2022-07-04 22:42 - 000003552 _____ C:\WINDOWS\system32\Tasks\RealDownloader Update Check 2022-07-04 22:41 - 2022-07-04 22:42 - 000003492 _____ C:\WINDOWS\system32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-212395072-253629970-2600101307-1000 2022-07-04 22:41 - 2022-07-04 22:42 - 000003406 _____ C:\WINDOWS\system32\Tasks\Norton WSC Integration 2022-07-04 22:41 - 2022-07-04 22:41 - 000011433 _____ C:\WINDOWS\diagwrn.xml 2022-07-04 22:41 - 2022-07-04 22:41 - 000011433 _____ C:\WINDOWS\diagerr.xml 2022-07-04 22:41 - 2022-07-04 22:41 - 000004586 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2022-07-04 22:41 - 2022-07-04 22:41 - 000003648 _____ C:\WINDOWS\system32\Tasks\Client Monitor 2022-07-04 22:41 - 2022-07-04 22:41 - 000003572 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2022-07-04 22:41 - 2022-07-04 22:41 - 000003464 _____ C:\WINDOWS\system32\Tasks\HPEA3JOBS 2022-07-04 22:41 - 2022-07-04 22:41 - 000003360 _____ C:\WINDOWS\system32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-212395072-253629970-2600101307-1000 2022-07-04 22:41 - 2022-07-04 22:41 - 000000000 ____D C:\WINDOWS\system32\Tasks\WPD 2022-07-04 22:41 - 2022-07-04 22:41 - 000000000 ____D C:\WINDOWS\system32\Tasks\OfficeSoftwareProtectionPlatform 2022-07-04 22:41 - 2022-07-04 22:41 - 000000000 ____D C:\WINDOWS\system32\Tasks\Norton Internet Security 2022-07-04 22:41 - 2022-07-04 22:41 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2022-07-04 22:41 - 2022-07-04 22:41 - 000000000 ____D C:\WINDOWS\system32\Tasks\Apple 2022-07-04 22:41 - 2022-07-04 22:41 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2022-07-04 22:40 - 2022-07-04 22:40 - 000024208 _____ C:\WINDOWS\system32\emptyregdb.dat 2022-07-04 22:30 - 2022-07-04 22:30 - 000001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2022-07-04 22:29 - 2022-07-04 22:53 - 000002453 _____ C:\Users\Robert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2022-07-04 22:29 - 2022-07-04 22:44 - 000000000 ____D C:\Users\Robert 2022-07-04 22:29 - 2022-07-04 22:39 - 000000000 ____D C:\Users\UpdatusUser 2022-07-04 22:29 - 2022-07-04 22:29 - 000000000 _SHDL C:\Users\UpdatusUser\Voisinage réseau 2022-07-04 22:29 - 2022-07-04 22:29 - 000000000 _SHDL C:\Users\UpdatusUser\Voisinage d'impression 2022-07-04 22:29 - 2022-07-04 22:29 - 000000000 _SHDL C:\Users\UpdatusUser\Modèles 2022-07-04 22:29 - 2022-07-04 22:29 - 000000000 _SHDL C:\Users\UpdatusUser\Mes documents 2022-07-04 22:29 - 2022-07-04 22:29 - 000000000 _SHDL C:\Users\UpdatusUser\Menu Démarrer 2022-07-04 22:29 - 2022-07-04 22:29 - 000000000 _SHDL C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2022-07-04 22:29 - 2022-07-04 22:29 - 000000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Historique 2022-07-04 22:29 - 2022-07-04 22:29 - 000000000 _SHDL C:\Users\Robert\Voisinage réseau 2022-07-04 22:29 - 2022-07-04 22:29 - 000000000 _SHDL C:\Users\Robert\Voisinage d'impression 2022-07-04 22:29 - 2022-07-04 22:29 - 000000000 _SHDL C:\Users\Robert\Modèles 2022-07-04 22:29 - 2022-07-04 22:29 - 000000000 _SHDL C:\Users\Robert\Mes documents 2022-07-04 22:29 - 2022-07-04 22:29 - 000000000 _SHDL C:\Users\Robert\Menu Démarrer 2022-07-04 22:29 - 2022-07-04 22:29 - 000000000 _SHDL C:\Users\Robert\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2022-07-04 22:29 - 2022-07-04 22:29 - 000000000 _SHDL C:\Users\Robert\AppData\Local\Historique 2022-07-04 22:29 - 2018-04-12 01:34 - 000001105 _____ C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2022-07-04 22:28 - 2022-07-05 08:46 - 001971050 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2022-07-04 22:25 - 2022-07-05 08:40 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2022-07-04 22:25 - 2022-07-04 22:25 - 000000200 _____ C:\WINDOWS\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat 2022-07-04 22:25 - 2022-07-04 22:25 - 000000000 _____ C:\WINDOWS\system32\GfxValDisplayLog.bin 2022-07-04 22:20 - 2022-07-05 09:09 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2022-07-04 22:20 - 2022-07-04 22:33 - 000280560 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2022-07-04 21:44 - 2022-07-04 21:43 - 000000001 ___SH C:\BOOTNXT 2022-07-04 18:17 - 2022-07-04 22:43 - 000000000 ___DC C:\WINDOWS\Panther 2022-07-04 11:01 - 2022-07-04 11:01 - 000000000 ___HD C:\$Windows.~WS 2022-07-04 10:25 - 2022-07-04 10:25 - 000000000 ___HD C:\$GetCurrent 2022-07-04 10:23 - 2022-07-04 15:20 - 000000000 ____D C:\Windows10Upgrade 2022-07-04 10:23 - 2022-07-04 10:45 - 000000741 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Assistant Mise à niveau de Windows 10.lnk 2022-07-02 13:17 - 2022-07-04 09:19 - 000000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2022-07-02 12:02 - 2022-07-04 22:35 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Security 2022-07-01 09:53 - 2022-07-01 09:59 - 000000000 ____D C:\ProgramData\UraniumBackup 2022-07-01 09:53 - 2022-07-01 09:59 - 000000000 ____D C:\Program Files (x86)\Uranium Backup 2022-06-30 22:07 - 2022-07-04 23:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Disk Copy 4.0 2022-06-30 22:07 - 2022-06-30 22:07 - 000001412 _____ C:\Users\Public\Desktop\EaseUS Disk Copy 4.0.lnk 2022-06-30 22:07 - 2022-06-30 22:07 - 000000000 ____D C:\ProgramData\SystemAcCrux 2022-06-30 22:07 - 2022-06-30 22:07 - 000000000 ____D C:\Program Files (x86)\EaseUS 2022-06-30 22:07 - 2022-03-15 03:17 - 000076936 _____ (CHENGDU YIWO Tech Development Co., Ltd) C:\WINDOWS\system32\Drivers\EUDSKCP.sys 2022-06-30 22:07 - 2022-03-15 03:17 - 000024200 _____ (CHENGDU YIWO Tech Development Co., Ltd) C:\WINDOWS\system32\Drivers\EUEUMDK.sys 2022-06-30 21:31 - 2022-06-30 22:01 - 000001024 ____H C:\SYSTAG.BIN 2022-06-30 21:30 - 2022-06-30 22:02 - 000000432 _____ C:\WINDOWS\SysWOW64\winsevr.dat 2022-06-30 21:30 - 2019-05-14 11:28 - 000051120 _____ C:\WINDOWS\system32\ambakdrv.sys 2022-06-30 21:30 - 2019-05-14 11:28 - 000038320 _____ C:\WINDOWS\system32\amwrtdrv.sys 2022-06-30 21:30 - 2016-12-21 22:52 - 000171952 _____ C:\WINDOWS\system32\ammntdrv.sys 2022-06-30 21:29 - 2022-06-30 21:31 - 000000000 ____D C:\ProgramData\AomeiBR 2022-06-30 20:34 - 2022-06-30 20:34 - 000000000 ____D C:\Users\Robert\.ms-ad 2022-06-30 18:35 - 2022-06-30 18:44 - 000000000 ____D C:\ProgramData\Macrium 2022-06-29 21:12 - 2022-06-30 11:16 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-07-05 09:43 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\Registration 2022-07-05 09:43 - 2018-04-12 01:36 - 000000000 ____D C:\WINDOWS\INF 2022-07-05 09:28 - 2017-11-09 10:53 - 000000000 ____D C:\Users\Robert\AppData\Roaming\Malwarebytes 2022-07-05 09:28 - 2017-11-09 10:52 - 000000000 ____D C:\ProgramData\Malwarebytes 2022-07-05 09:06 - 2018-04-12 01:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-07-05 09:01 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\AppReadiness 2022-07-05 08:59 - 2018-04-12 01:38 - 000000000 ___HD C:\Program Files\WindowsApps 2022-07-05 08:46 - 2018-04-12 18:18 - 000864236 _____ C:\WINDOWS\system32\perfh00C.dat 2022-07-05 08:46 - 2018-04-12 18:18 - 000182396 _____ C:\WINDOWS\system32\perfc00C.dat 2022-07-05 08:44 - 2016-11-19 14:25 - 000000000 ____D C:\Users\Robert\AppData\LocalLow\Mozilla 2022-07-05 08:43 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\appcompat 2022-07-04 23:31 - 2018-04-11 23:04 - 000262144 _____ C:\WINDOWS\system32\config\BBI 2022-07-04 23:29 - 2018-04-11 23:04 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2022-07-04 23:20 - 2018-04-12 18:18 - 000000000 ____D C:\WINDOWS\SysWOW64\sysprep 2022-07-04 23:20 - 2018-04-12 01:38 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template 2022-07-04 23:20 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed 2022-07-04 23:20 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\oobe 2022-07-04 23:20 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\NDF 2022-07-04 23:20 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\Macromed 2022-07-04 23:20 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2022-07-04 23:20 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\Help 2022-07-04 23:20 - 2018-04-12 01:38 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2022-07-04 23:20 - 2014-06-01 15:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FUJIFILM 2022-07-04 23:20 - 2014-04-19 15:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealNetworks 2022-07-04 23:20 - 2014-03-21 09:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft PhotoBase 2022-07-04 23:20 - 2014-03-04 16:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft PhotoStudio 2022-07-04 23:20 - 2014-03-01 12:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero 7 Essentials 2022-07-04 23:20 - 2014-02-28 19:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2022-07-04 23:20 - 2014-02-28 19:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2022-07-04 23:20 - 2014-02-28 19:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2022-07-04 23:20 - 2014-02-28 17:49 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2022-07-04 23:20 - 2014-02-28 17:49 - 000000000 ____D C:\Program Files\Intel 2022-07-04 23:20 - 2014-02-28 17:48 - 000000000 ____D C:\Program Files (x86)\Intel 2022-07-04 23:20 - 2011-04-12 11:27 - 000000000 ___RD C:\Users\Public\Recorded TV 2022-07-04 23:20 - 2009-07-14 05:20 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated 2022-07-04 23:19 - 2018-04-12 01:41 - 000000000 ____D C:\WINDOWS\Setup 2022-07-04 23:18 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\IME 2022-07-04 23:17 - 2018-04-12 01:38 - 000000000 __SHD C:\Program Files\Windows Sidebar 2022-07-04 23:17 - 2018-04-12 01:38 - 000000000 __SHD C:\Program Files (x86)\Windows Sidebar 2022-07-04 23:17 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\IME 2022-07-04 23:17 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\schemas 2022-07-04 23:17 - 2017-05-30 10:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TRENDnet 2022-07-04 23:17 - 2014-04-05 12:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP 2022-07-04 23:17 - 2014-04-04 15:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities 2022-07-04 23:17 - 2014-02-28 17:51 - 000000000 ____D C:\Program Files\Realtek 2022-07-04 23:17 - 2009-07-14 07:32 - 000000000 ____D C:\Program Files\Microsoft Games 2022-07-04 23:17 - 2009-07-14 07:32 - 000000000 ____D C:\Program Files\DVD Maker 2022-07-04 23:12 - 2018-04-12 01:38 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2022-07-04 23:12 - 2018-04-12 01:38 - 000000000 ___SD C:\WINDOWS\system32\UNP 2022-07-04 23:12 - 2018-04-12 01:38 - 000000000 ___SD C:\WINDOWS\system32\F12 2022-07-04 23:12 - 2018-04-12 01:38 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2022-07-04 23:12 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\TextInput 2022-07-04 23:12 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2022-07-04 23:12 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2022-07-04 23:12 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv 2022-07-04 23:12 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2022-07-04 23:12 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2022-07-04 23:12 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2022-07-04 23:12 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences 2022-07-04 23:12 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\setup 2022-07-04 23:12 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\inetsrv 2022-07-04 23:12 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\appraiser 2022-07-04 23:12 - 2018-04-11 23:04 - 000000000 ____D C:\WINDOWS\system32\Dism 2022-07-04 23:11 - 2018-04-12 01:38 - 000017800 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml 2022-07-04 23:11 - 2018-04-12 01:38 - 000000000 ___RD C:\Program Files\Windows Defender 2022-07-04 23:11 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\ShellExperiences 2022-07-04 23:11 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\ShellComponents 2022-07-04 23:11 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\Provisioning 2022-07-04 23:11 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2022-07-04 23:11 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\bcastdvr 2022-07-04 23:11 - 2018-04-12 01:38 - 000000000 ____D C:\Program Files (x86)\Windows Defender 2022-07-04 23:11 - 2018-04-11 23:04 - 000000000 ____D C:\WINDOWS\servicing 2022-07-04 23:02 - 2018-04-12 01:30 - 000000000 ____D C:\WINDOWS\CbsTemp 2022-07-04 22:58 - 2018-06-19 21:53 - 000778240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsnap.dll 2022-07-04 22:58 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI 2022-07-04 22:58 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\MUI 2022-07-04 22:58 - 2018-04-12 01:35 - 000613376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqsnap.dll 2022-07-04 22:58 - 2018-04-12 01:35 - 000562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqutil.dll 2022-07-04 22:58 - 2018-04-12 01:35 - 000266240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.dll 2022-07-04 22:58 - 2018-04-12 01:35 - 000204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll 2022-07-04 22:58 - 2018-04-12 01:35 - 000172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisRtl.dll 2022-07-04 22:58 - 2018-04-12 01:35 - 000160256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqrt.dll 2022-07-04 22:58 - 2018-04-12 01:35 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.tlb 2022-07-04 22:58 - 2018-04-12 01:35 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa30.tlb 2022-07-04 22:58 - 2018-04-12 01:35 - 000055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa20.tlb 2022-07-04 22:58 - 2018-04-12 01:35 - 000054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll 2022-07-04 22:58 - 2018-04-12 01:35 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll 2022-07-04 22:58 - 2018-04-12 01:35 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\admwprox.dll 2022-07-04 22:58 - 2018-04-12 01:35 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa10.tlb 2022-07-04 22:58 - 2018-04-12 01:35 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ahadmin.dll 2022-07-04 22:58 - 2018-04-12 01:35 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe 2022-07-04 22:58 - 2018-04-12 01:35 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisreset.exe 2022-07-04 22:58 - 2018-04-12 01:35 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll 2022-07-04 22:58 - 2018-04-12 01:35 - 000014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqcertui.dll 2022-07-04 22:58 - 2018-04-12 01:35 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\cngkeyhelper.dll 2022-07-04 22:58 - 2018-04-12 01:35 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll 2022-07-04 22:58 - 2018-04-12 01:35 - 000011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wamregps.dll 2022-07-04 22:58 - 2018-04-12 01:35 - 000011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cngkeyhelper.dll 2022-07-04 22:58 - 2018-04-12 01:35 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisrstap.dll 2022-07-04 22:58 - 2018-04-12 01:35 - 000009096 _____ C:\WINDOWS\SysWOW64\msmqtrc.mof 2022-07-04 22:58 - 2018-04-12 01:33 - 001409536 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqqm.dll 2022-07-04 22:58 - 2018-04-12 01:33 - 000564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqutil.dll 2022-07-04 22:58 - 2018-04-12 01:33 - 000328192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.dll 2022-07-04 22:58 - 2018-04-12 01:33 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqrt.dll 2022-07-04 22:58 - 2018-04-12 01:33 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mqac.sys 2022-07-04 22:58 - 2018-04-12 01:33 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqlogmgr.dll 2022-07-04 22:58 - 2018-04-12 01:33 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.tlb 2022-07-04 22:58 - 2018-04-12 01:33 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa30.tlb 2022-07-04 22:58 - 2018-04-12 01:33 - 000055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa20.tlb 2022-07-04 22:58 - 2018-04-12 01:33 - 000054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqbkup.exe 2022-07-04 22:58 - 2018-04-12 01:33 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa10.tlb 2022-07-04 22:58 - 2018-04-12 01:33 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsvc.exe 2022-07-04 22:58 - 2018-04-12 01:33 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqcertui.dll 2022-07-04 22:58 - 2018-04-12 01:33 - 000009096 _____ C:\WINDOWS\system32\msmqtrc.mof 2022-07-04 22:57 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV 2022-07-04 22:57 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2022-07-04 22:57 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE 2022-07-04 22:57 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX 2022-07-04 22:57 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\lv-LV 2022-07-04 22:57 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2022-07-04 22:57 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\et-EE 2022-07-04 22:57 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\es-MX 2022-07-04 22:51 - 2014-02-28 19:53 - 000000000 ___RD C:\Users\Robert\OneDrive 2022-07-04 22:49 - 2021-03-20 15:27 - 000000000 ____D C:\Users\Robert\AppData\LocalLow\Norton 2022-07-04 22:49 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2022-07-04 22:47 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\OCR 2022-07-04 22:43 - 2014-02-28 17:48 - 000000000 ____D C:\Intel 2022-07-04 22:42 - 2018-04-12 01:38 - 000000000 ____D C:\Program Files\windows nt 2022-07-04 22:40 - 2018-04-12 01:38 - 000000000 __RHD C:\Users\Public\Libraries 2022-07-04 22:40 - 2016-06-01 20:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2022-07-04 22:39 - 2020-07-09 21:35 - 000002472 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-07-04 22:39 - 2020-07-09 21:35 - 000002310 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2022-07-04 22:37 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\spool 2022-07-04 22:37 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\FxsTmp 2022-07-04 22:35 - 2019-11-26 13:56 - 000002467 _____ C:\Users\Public\Desktop\Norton Security.lnk 2022-07-04 22:35 - 2018-04-12 01:38 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2022-07-04 22:31 - 2014-03-01 13:53 - 000000000 ____D C:\Users\Robert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Norton 2022-07-04 22:31 - 2014-02-28 19:33 - 000000000 ____D C:\Users\Robert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CCleaner 2022-07-04 22:28 - 2014-02-28 17:53 - 001876524 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI 2022-07-04 22:26 - 2018-04-12 01:38 - 000000000 ___RD C:\WINDOWS\PrintDialog 2022-07-04 22:26 - 2018-04-12 01:38 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2022-07-04 22:25 - 2014-02-28 18:14 - 000000000 ____D C:\ProgramData\NVIDIA 2022-07-04 22:25 - 2014-02-28 18:14 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2022-07-04 22:25 - 2014-02-28 18:09 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2022-07-04 22:25 - 2014-02-28 17:51 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM 2022-07-04 22:24 - 2018-04-12 01:38 - 000000000 ____D C:\ProgramData\USOPrivate 2022-07-04 21:44 - 2014-02-28 17:33 - 000008192 __RSH C:\BOOTSECT.BAK 2022-07-04 21:43 - 2014-02-28 17:33 - 000407558 __RSH C:\bootmgr 2022-07-04 20:57 - 2009-07-14 06:45 - 000032656 _____ C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2022-07-04 20:57 - 2009-07-14 06:45 - 000032656 _____ C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2022-07-04 13:16 - 2014-02-28 18:31 - 000000000 ____D C:\ProgramData\Mozilla 2022-07-04 09:19 - 2014-02-28 18:31 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2022-07-02 15:27 - 2022-02-09 12:32 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2022-07-02 13:27 - 2015-12-05 12:36 - 000000000 ____D C:\Program Files\Common Files\AV 2022-07-02 12:02 - 2019-11-26 13:55 - 000000000 ____D C:\WINDOWS\system32\Drivers\NGCx64 2022-07-01 09:55 - 2015-06-14 12:39 - 000000000 ____D C:\ProgramData\Package Cache 2022-06-30 20:27 - 2017-04-13 19:24 - 000002106 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2022-06-25 10:35 - 2014-04-06 18:22 - 000000000 ____D C:\Users\Robert\AppData\LocalLow\Temp 2022-06-21 10:07 - 2014-02-28 19:40 - 000000000 ____D C:\Program Files\Microsoft Office 15 2022-06-18 11:54 - 2014-02-28 19:27 - 000000000 ____D C:\WINDOWS\system32\MRT 2022-06-18 11:50 - 2014-02-28 19:27 - 145918784 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe ==================== Fichiers à la racine de certains dossiers ======== 2017-05-30 13:01 - 2017-05-30 13:01 - 000000000 _____ () C:\Users\Robert\AppData\Local\ars.cache 2017-05-30 13:01 - 2017-05-30 13:01 - 000000000 _____ () C:\Users\Robert\AppData\Local\census.cache 2014-05-26 06:53 - 2021-04-20 18:20 - 000020480 _____ () C:\Users\Robert\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2017-05-30 09:17 - 2017-05-30 09:17 - 000000036 _____ () C:\Users\Robert\AppData\Local\housecall.guid.cache ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================