Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 30-08-2022 Exécuté par adeli (administrateur) sur LAPTOP-1TREBVOA (HP HP Laptop) (02-09-2022 13:32:28) Exécuté depuis C:\Users\adeli\OneDrive\Bureau Profils chargés: adeli Plate-forme: Microsoft Windows 10 Famille Version 21H1 19043.1889 (X64) Langue: Français (France) Navigateur par défaut: FF Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe (C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCopyAccelerator.exe (DriverStore\FileRepository\c0336994.inf_amd64_b976c53d8b210252\B336712\atiesrxx.exe ->) (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\c0336994.inf_amd64_b976c53d8b210252\B336712\atieclxx.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5> (explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek) C:\Program Files (x86)\Realtek\PCIE Wireless LAN\RtlS5Wake\RtlS5Wake.exe (HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <12> (services.exe ->) () [Fichier non signé] C:\Program Files\ATI Technologies\ATI.ACE\a4\AdaptiveSleepService.exe (services.exe ->) (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\c0336994.inf_amd64_b976c53d8b210252\B336712\atiesrxx.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Enabling Services\DiagsCap.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Enabling Services\NetworkCap.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Enabling Services\SysInfoCap.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (services.exe ->) (HP Inc. -> HP) C:\Program Files (x86)\HP\Shared\hpqwmiex.exe (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Windows\RtkBtAudioServ.exe (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\NisSrv.exe (services.exe ->) (Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (services.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnhService.exe (svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HP JumpStart Launch\HPJumpStartLaunch.exe (svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2204.13303.0_x64__8wekyb3d8bbwe\Cortana.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22062.542.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (SynTPEnhService.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnh.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [11235928 2020-04-24] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [RtlS5Wake] => C:\Program Files (x86)\Realtek\PCIE Wireless LAN\RtlS5Wake\RtlS5Wake.exe [2097600 2018-02-23] (Realtek Semiconductor Corp. -> Realtek) HKLM-x32\...\Run: [RtlS5Wake] => C:\Program Files (x86)\Realtek\PCIE Wireless LAN\RtlS5Wake\RtlS5Wake.exe [2097600 2018-02-23] (Realtek Semiconductor Corp. -> Realtek) HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [709160 2018-05-22] (HP Inc. -> HP Inc.) HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restriction <==== ATTENTION HKU\S-1-5-21-1431274286-1451116530-715054827-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [38274576 2022-08-12] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-1431274286-1451116530-715054827-1001\...\Run: [MicrosoftEdgeAutoLaunch_5AA5CA49DC93FE977C227924024F7B4E] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3827104 2022-08-25] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-1431274286-1451116530-715054827-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4230544 2022-07-26] (Valve Corp. -> Valve Corporation) HKLM\...\Print\Monitors\HP E111 Status Monitor: C:\WINDOWS\system32\hpinkstsE111LM.dll [393352 2017-04-14] (Hewlett Packard -> HP Inc.) ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {0D0D1846-BA80-4E39-87F2-F65251DDF8B0} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BatteryStatusTest => cmd /c start hpdiags://BatteryStatusTest Task: {1008016C-4B3A-4FFA-B49D-FAC864688739} - System32\Tasks\Hewlett-Packard\HP Diagnostics\SmartCheckError => cmd /c start hpdiags://SmartCheckError Task: {11349D1B-29D4-4685-9DCA-42A872EE1D7A} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB" Task: {169C9B44-1C6A-4E84-98EF-A8DA458E5154} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\dvrcmd.exe [63880 2018-12-10] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) Task: {1C5412C8-AB00-4C3B-8B26-4F4D49330312} - System32\Tasks\Hewlett-Packard\HP Diagnostics\ShowUI => cmd /c start hpdiags: Task: {248EEE57-18F9-4CA8-9E8C-DDBF7921DB7A} - System32\Tasks\Hewlett-Packard\HPDeviceCheck => C:\Program Files (x86)\HP\HP Support Framework\Modules\HPDeviceCheck\HPDeviceCheck.exe [316488 2022-08-17] (HP Inc. -> ) Task: {2EB6E2C3-A023-491B-96BE-CEFF246EB9ED} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPSFReport.exe [138328 2022-08-17] (HP Inc. -> HP Inc.) Task: {4008F434-39F0-414E-AD17-62177B276D7D} - System32\Tasks\HPEA3JOBS => C:\Program [Argument = Files\HP\HP ePrint\hpeprint.exe /CheckJobs] Task: {4483F789-D7B3-4CEE-9643-171AEF7A0AC8} - System32\Tasks\Hewlett-Packard\HP Diagnostics\LaunchUI => cmd /c start hpdiags://LaunchUI Task: {4523FB20-B7B4-4C26-A322-6F7209E4DA0A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-24] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {472BE6BC-B68B-436A-9168-EE4E3850EFC3} - System32\Tasks\Hewlett-Packard\HP Diagnostics\SmartCheckTest => cmd /c start hpdiags://SmartCheckTest Task: {584C3EB1-21A0-48D2-B808-96924CB91226} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {5CA795AD-8804-4DA0-B83A-A3D87A94FF4E} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [49032 2018-12-10] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) Task: {7DFA27FB-939F-42C0-A78B-B550DFB8E2AE} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1149512 2022-08-17] (HP Inc. -> HP Inc.) Task: {8C475352-949E-486E-8794-7141737D0E3A} - System32\Tasks\Hewlett-Packard\HP Web Products Detection => C:\Program Files (x86)\HP\HP Support Framework\Modules\HPWPD.exe [310856 2022-08-17] (HP Inc. -> HP Inc.) Task: {901F2D34-DA52-4111-85C4-1D9FD95F2A6D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1149512 2022-08-17] (HP Inc. -> HP Inc.) Task: {9374E9DC-9E7F-4386-9BE3-EEB73B284EB8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-24] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {9E6FDFD5-B3C4-4DC5-9371-6548BAA9C644} - System32\Tasks\CCleanerSkipUAC - adeli => C:\Program Files\CCleaner\CCleaner.exe [31990800 2022-08-12] (Piriform Software Ltd -> Piriform Software Ltd) Task: {A4B083B9-DE16-4FFF-8524-44A9EA151CBB} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-24] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {A82AAB84-A387-4EE4-A8AD-A6944B1BCC2A} - System32\Tasks\Hewlett-Packard\HP Diagnostics\ABO => cmd /c start hpdiags://ABO Task: {B02D5105-5E9E-4B66-BA7B-5E37637A58AF} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BCF => cmd /c start hpdiags://BCF Task: {B0B4F84E-AAA0-4A17-A33E-49A90049A9AE} - System32\Tasks\HPJumpStartLaunch => C:\Program Files (x86)\HP\HP JumpStart Launch\HPJumpStartLaunch.exe [461824 2017-10-06] (HP Inc. -> HP Inc.) Task: {B2182E69-BDEC-4564-83A8-749799F918A3} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-08-12] (Piriform Software Ltd -> Piriform) Task: {C5544280-3F28-4DEA-A326-9D61475C1FB8} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Update Notice => C:\Program Files (x86)\HP\HP Support Framework\Resources\BingPopup\BingPopup.exe [847392 2022-08-17] (HP Inc. -> HP Inc.) Task: {C601A21C-1D03-44E1-9C90-D727348B4300} - System32\Tasks\BlueStacksHelper_nxt => C:\Program Files\BlueStacks_nxt\BlueStacksHelper.exe [274920 2022-08-18] (Bluestack Systems, Inc -> BlueStack Systems, Inc.) Task: {C8F38B34-CE9A-483B-9157-25D40A6DFD92} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BHM2 => cmd /c start hpdiags://BHM2 Task: {CB5170C7-6453-44E4-BB5F-CD77E19CE213} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-24] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {DE3579CB-9634-4164-8F6A-6306491B4D37} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BHM1 => cmd /c start hpdiags://BHM1 Task: {E9B698A3-8BE3-423C-90DF-13DE233D008F} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BatteryStatusError => cmd /c start hpdiags://BatteryStatusError Task: {F0750910-DBB6-41DC-95CC-93168228A78B} - System32\Tasks\HPAudioSwitch => C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe [1644472 2019-06-21] (HP Inc. -> HP Inc.) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{48d74287-c156-41a9-94a4-1c52f8d25507}: [DhcpNameServer] 192.168.1.1 Edge: ======= Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)] Edge Extension: (Pas de nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [non trouvé(e)] Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)] Edge Extension: (Pas de nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [non trouvé(e)] Edge DefaultProfile: Default Edge Profile: C:\Users\adeli\AppData\Local\Microsoft\Edge\User Data\Default [2022-09-02] FireFox: ======== FF DefaultProfile: pnql3lvy.default-1594984724296 FF ProfilePath: C:\Users\adeli\AppData\Roaming\Mozilla\Firefox\Profiles\pnql3lvy.default-1594984724296 [2022-09-02] FF Homepage: Mozilla\Firefox\Profiles\pnql3lvy.default-1594984724296 -> hxxp://www.google.fr/ FF Extension: (uBlock Origin) - C:\Users\adeli\AppData\Roaming\Mozilla\Firefox\Profiles\pnql3lvy.default-1594984724296\Extensions\uBlock0@raymondhill.net.xpi [2022-08-17] FF Extension: (have a fox dream) - C:\Users\adeli\AppData\Roaming\Mozilla\Firefox\Profiles\pnql3lvy.default-1594984724296\Extensions\{3f1aff6b-0363-410f-b81b-9a286ffb4b10}.xpi [2021-10-07] FF Extension: (Fairytale Of Nature) - C:\Users\adeli\AppData\Roaming\Mozilla\Firefox\Profiles\pnql3lvy.default-1594984724296\Extensions\{6804879d-8801-473a-b13d-605b902a5e4f}.xpi [2021-06-14] FF Extension: (NoScript) - C:\Users\adeli\AppData\Roaming\Mozilla\Firefox\Profiles\pnql3lvy.default-1594984724296\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2022-09-01] FF Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\adeli\AppData\Roaming\Mozilla\Firefox\Profiles\pnql3lvy.default-1594984724296\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2022-08-30] FF Extension: (Greasemonkey) - C:\Users\adeli\AppData\Roaming\Mozilla\Firefox\Profiles\pnql3lvy.default-1594984724296\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2021-01-28] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdaptiveSleepService; C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe [138752 2018-06-13] () [Fichier non signé] S4 BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [679400 2018-04-02] (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) R3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1082896 2022-08-12] (Piriform Software Ltd -> Piriform Software Ltd) R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [905080 2019-12-19] (HP Inc. -> HP Inc.) S2 HPAppHelperCap; C:\Program Files\HP\HP Enabling Services\AppHelperCap.exe [771088 2022-08-17] (HP Inc. -> HP Inc.) R2 HPDiagsCap; C:\Program Files\HP\HP Enabling Services\DiagsCap.exe [769568 2022-08-17] (HP Inc. -> HP Inc.) S4 HPJumpStartBridge; c:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe [477184 2017-10-06] (HP Inc. -> HP Inc.) R2 HPNetworkCap; C:\Program Files\HP\HP Enabling Services\NetworkCap.exe [766504 2022-08-17] (HP Inc. -> HP Inc.) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [288360 2021-05-11] (HP Inc. -> HP Inc.) R3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1149480 2018-06-07] (HP Inc. -> HP) R2 HPSysInfoCap; C:\Program Files\HP\HP Enabling Services\SysInfoCap.exe [770088 2022-08-17] (HP Inc. -> HP Inc.) S4 HPWMISVC; C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [628768 2017-07-13] (HP Inc. -> HP Inc.) S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [6960640 2020-02-26] (Malwarebytes Inc -> Malwarebytes) R2 RtkBtAudioServ; C:\WINDOWS\RtkBtAudioServ.exe [215992 2018-05-31] (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\NisSrv.exe [3120992 2022-06-24] (Microsoft Windows Publisher -> Microsoft Corporation) S4 WildTangentHelper; C:\Program Files (x86)\WildTangent Games\Integration\WildTangentHelperService.exe [1559912 2018-10-09] (WildTangent Inc -> ) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe [133544 2022-06-24] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 BlueStacksDrv_nxt; C:\Program Files\BlueStacks_nxt\BstkDrv_nxt.sys [321792 2022-08-18] (Bluestack Systems, Inc -> Bluestack System Inc.) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Fichier non signé] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Fichier non signé] S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [160376 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [20936 2020-02-26] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167544 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49576 2022-06-24] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [452856 2022-06-24] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [91384 2022-06-24] (Microsoft Windows -> Microsoft Corporation) R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [37280 2021-11-23] (HP Inc. -> HP) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Trois mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-09-02 13:13 - 2022-09-02 13:25 - 000000000 ____D C:\Users\adeli\AppData\Roaming\ZHP 2022-09-02 13:13 - 2022-09-02 13:13 - 000000000 ____D C:\Users\adeli\AppData\Local\ZHP 2022-08-30 13:41 - 2022-08-30 13:41 - 000000000 ____D C:\ProgramData\Piriform 2022-08-28 18:06 - 2022-08-28 18:06 - 000000081 _____ C:\Users\adeli\AppData\Roaming\nuvotonISP.lua 2022-08-28 17:55 - 2022-08-28 17:56 - 085820106 _____ C:\Users\adeli\Downloads\1615-driver.zip 2022-08-20 14:59 - 2022-08-20 14:59 - 000000000 ____D C:\Users\adeli\AppData\Local\RomStation 2022-08-20 14:59 - 2022-08-20 14:59 - 000000000 ____D C:\Users\adeli\AppData\Local\JxBrowser 2022-08-20 14:57 - 2022-08-30 13:40 - 000000000 ____D C:\Users\adeli\AppData\Local\CrashDumps 2022-08-20 14:57 - 2022-08-20 14:57 - 000000686 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RomStation.lnk 2022-08-20 14:56 - 2022-08-20 14:57 - 000000000 ____D C:\RomStation 2022-08-20 14:48 - 2022-08-20 14:49 - 241917634 _____ (RomStation ) C:\Users\adeli\Downloads\romstation-windows-x86.exe 2022-08-20 14:43 - 2022-08-20 14:43 - 000002100 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks 5.lnk 2022-08-20 14:43 - 2022-08-20 14:43 - 000002098 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks 5 Multi-Instance Manager.lnk 2022-08-20 14:40 - 2022-08-20 14:44 - 000000000 ____D C:\ProgramData\BlueStacks_nxt 2022-08-20 14:40 - 2022-08-20 14:40 - 000000000 ____D C:\Program Files\BlueStacks_nxt 2022-08-20 14:34 - 2022-08-20 14:34 - 000805272 _____ (BlueStack Systems Inc.) C:\Users\adeli\Downloads\BlueStacksInstaller_5.9.12.1003_native_a83e3ca2738f54205194c4c5755c0e93_3_R2Vuc2hpbiBJbXBhY3Q=.exe 2022-08-14 19:07 - 2022-08-14 19:07 - 004856000 _____ (Husdawg, LLC) C:\Users\adeli\Downloads\Detection(1).exe 2022-08-13 14:22 - 2022-08-20 14:26 - 000000000 ____D C:\Users\adeli\AppData\Local\BlueStacks X 2022-08-13 14:18 - 2022-08-20 14:43 - 000003938 _____ C:\WINDOWS\system32\Tasks\BlueStacksHelper_nxt 2022-08-13 14:18 - 2022-08-20 14:30 - 000000000 ____D C:\ProgramData\boost_interprocess 2022-08-13 14:17 - 2022-08-13 14:17 - 000006893 _____ C:\Users\adeli\-1.14-windows.xml 2022-08-13 14:14 - 2022-08-13 14:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks X 2022-08-13 14:13 - 2022-08-20 14:37 - 000000000 ____D C:\Program Files (x86)\BlueStacks X 2022-08-13 14:12 - 2022-08-20 14:43 - 000000000 ____D C:\Users\adeli\AppData\Local\BlueStacksSetup 2022-08-13 14:12 - 2022-08-20 14:40 - 000000000 ____D C:\Users\adeli\AppData\Local\Bluestacks 2022-08-13 14:12 - 2022-08-20 14:35 - 000000000 ____D C:\Users\Public\BlueStacks 2022-08-13 14:12 - 2022-08-13 14:12 - 000805208 _____ (BlueStack Systems Inc.) C:\Users\adeli\Downloads\BlueStacks10Installer_0.18.1.2_native_245fd834182ecd151f09ebc55d807268_0.exe 2022-08-13 13:29 - 2022-08-13 13:29 - 000000000 ____D C:\Users\adeli\AppData\Local\Steam 2022-08-13 13:29 - 2022-08-13 13:29 - 000000000 ____D C:\Users\adeli\AppData\Local\CEF 2022-08-13 13:25 - 2022-08-16 01:24 - 000000000 ____D C:\Program Files (x86)\Steam 2022-08-13 13:25 - 2022-08-13 13:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2022-08-13 13:24 - 2022-08-13 13:24 - 002296488 _____ C:\Users\adeli\Downloads\SteamSetup.exe 2022-08-13 01:42 - 2022-08-13 01:42 - 001624440 _____ (Tous Les Drivers) C:\Users\adeli\Downloads\Mes_Drivers_3.0.4.exe 2022-08-10 13:47 - 2022-08-10 13:47 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr 2022-08-10 13:47 - 2022-08-10 13:47 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr 2022-08-10 13:46 - 2022-08-10 13:46 - 000011803 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2022-08-10 13:45 - 2022-08-10 13:45 - 000162304 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe 2022-08-10 13:45 - 2022-08-10 13:45 - 000089088 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll 2022-08-10 13:45 - 2022-08-10 13:45 - 000073216 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll 2022-08-10 13:45 - 2022-08-10 13:45 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe 2022-08-10 13:44 - 2022-08-10 13:44 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll 2022-08-10 13:07 - 2022-08-10 13:07 - 000000000 ___HD C:\$WinREAgent 2022-08-06 18:18 - 2022-08-06 18:18 - 000000000 ___RD C:\Users\adeli\OneDrive\Documents\Scanned Documents 2022-08-06 18:18 - 2022-08-06 18:18 - 000000000 ____D C:\Users\adeli\OneDrive\Documents\Fax 2022-08-06 17:59 - 2022-08-06 17:59 - 000088823 _____ C:\Users\adeli\Downloads\Ow-mVjNZ.pdf 2022-08-03 13:29 - 2022-08-03 13:29 - 000105368 _____ C:\Users\adeli\Downloads\attestation(27).pdf 2022-08-01 13:12 - 2022-08-01 13:12 - 000499843 _____ C:\Users\adeli\Downloads\Preparateur_des_hebergements_F-H_2022.pdf 2022-08-01 13:11 - 2022-08-01 13:11 - 000502141 _____ C:\Users\adeli\Downloads\Guide_animateur_F-H_2022.pdf 2022-07-31 13:27 - 2022-07-31 13:27 - 000103684 _____ C:\Users\adeli\Downloads\Mme BOSSARD ADELINE(1).pdf 2022-07-31 13:20 - 2022-07-31 13:20 - 000060467 _____ C:\Users\adeli\Downloads\081202207-M00232.pdf 2022-07-16 22:43 - 2022-07-16 22:43 - 000693248 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll 2022-07-16 22:43 - 2022-07-16 22:43 - 000470528 _____ (curl, hxxps://curl.se/) C:\WINDOWS\SysWOW64\curl.exe 2022-07-16 22:43 - 2022-07-16 22:43 - 000026624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mode.com 2022-07-16 22:43 - 2022-07-16 22:43 - 000018944 _____ C:\WINDOWS\SysWOW64\WsdProviderUtil.dll 2022-07-16 22:43 - 2022-07-16 22:43 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tree.com 2022-07-16 22:43 - 2022-07-16 22:43 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\chcp.com 2022-07-16 22:42 - 2022-07-16 22:42 - 000530944 _____ (curl, hxxps://curl.se/) C:\WINDOWS\system32\curl.exe 2022-07-16 22:42 - 2022-07-16 22:42 - 000270848 _____ C:\WINDOWS\system32\EsclScan.dll 2022-07-16 22:42 - 2022-07-16 22:42 - 000152064 _____ C:\WINDOWS\system32\EsclProtocol.dll 2022-07-16 22:42 - 2022-07-16 22:42 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\mode.com 2022-07-16 22:42 - 2022-07-16 22:42 - 000020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\tree.com 2022-07-16 22:42 - 2022-07-16 22:42 - 000014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\chcp.com 2022-07-16 22:40 - 2022-07-16 22:40 - 000061952 _____ C:\WINDOWS\system32\printticketvalidation.dll 2022-07-16 22:40 - 2022-07-16 22:40 - 000057344 _____ C:\WINDOWS\system32\APMonUI.dll 2022-07-16 22:38 - 2022-07-16 22:38 - 002260480 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll 2022-07-16 22:38 - 2022-07-16 22:38 - 000024576 _____ C:\WINDOWS\system32\WsdProviderUtil.dll 2022-07-16 22:37 - 2022-07-16 22:37 - 000640512 _____ C:\WINDOWS\system32\SettingSyncDownloadHelper.dll 2022-07-09 19:38 - 2022-07-09 19:39 - 000000000 ____D C:\Users\adeli\OneDrive\Documents\Photos 2021-2022 2022-07-09 19:37 - 2022-07-09 19:37 - 048095620 _____ C:\Users\adeli\Downloads\DisneylandParis-C00102990-QE154111-220708_0748-1of1.zip 2022-07-08 14:29 - 2022-07-08 14:29 - 000103684 _____ C:\Users\adeli\Downloads\Mme BOSSARD ADELINE.pdf 2022-07-08 14:22 - 2022-07-08 14:22 - 000105365 _____ C:\Users\adeli\Downloads\attestation(26).pdf 2022-07-02 23:03 - 2022-07-02 23:03 - 000104715 _____ C:\Users\adeli\Downloads\attestation(25).pdf 2022-07-01 18:09 - 2022-07-01 18:10 - 000104715 _____ C:\Users\adeli\Downloads\attestation(24).pdf 2022-06-28 17:46 - 2022-06-28 17:46 - 000069855 _____ C:\Users\adeli\Downloads\PIECES A FOURNIR POUR UNE LOCATION-2.pdf 2022-06-28 17:42 - 2022-08-06 18:19 - 000000000 ____D C:\Users\adeli\OneDrive\Documents\Dossier logement 2022 2022-06-24 16:41 - 2022-06-24 16:41 - 001059730 _____ C:\Users\adeli\Downloads\QC the HUB article_Disneyland® Paris_April 22.pdf 2022-06-24 15:55 - 2022-06-24 15:55 - 000060465 _____ C:\Users\adeli\Downloads\081202205-M00062.pdf 2022-06-24 15:54 - 2022-06-24 15:54 - 000060468 _____ C:\Users\adeli\Downloads\081202206-M00242.pdf 2022-06-24 15:49 - 2022-06-24 15:49 - 000491288 _____ C:\Users\adeli\Downloads\LISTE DES DOCUMENTS A FOURNIR.pdf 2022-06-23 18:07 - 2022-06-23 18:07 - 000306806 _____ C:\Users\adeli\Downloads\CNED_CAP_AEPE_DOC22_1.pdf 2022-06-18 15:54 - 2022-06-18 15:54 - 000099003 _____ C:\Users\adeli\Downloads\7836V4DJXR3079758302220618134923164335201.pdf 2022-06-18 15:49 - 2022-06-18 15:49 - 000099224 _____ C:\Users\adeli\Downloads\7815V4DJXR3079758301220618134923929466954.pdf 2022-06-16 13:51 - 2022-06-16 13:51 - 000104448 _____ C:\WINDOWS\system32\nettraceex.dll 2022-06-16 13:50 - 2022-06-16 13:50 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll 2022-06-16 13:49 - 2022-06-16 13:49 - 000232288 _____ C:\WINDOWS\system32\containerdevicemanagement.dll 2022-06-15 14:39 - 2022-06-15 14:39 - 000098513 _____ C:\Users\adeli\Downloads\7815V4DJXR3079758301220615123933434176124.pdf 2022-06-12 19:39 - 2022-06-12 19:39 - 000000993 _____ C:\Users\adeli\Downloads\download.440b.d4ad.zip ==================== Trois mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-09-02 13:33 - 2020-02-26 17:32 - 000000000 ____D C:\FRST 2022-09-02 13:08 - 2018-12-07 00:27 - 000000000 ____D C:\Program Files\CCleaner 2022-09-02 13:07 - 2022-02-11 18:37 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2022-09-02 13:06 - 2021-10-11 22:13 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2022-09-02 13:06 - 2018-11-27 20:35 - 000001012 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2022-09-02 13:06 - 2018-11-27 20:35 - 000000000 ____D C:\Users\adeli\AppData\LocalLow\Mozilla 2022-09-02 13:06 - 2018-11-27 20:34 - 000000000 ____D C:\Program Files\Mozilla Firefox 2022-09-01 16:09 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-09-01 14:29 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2022-09-01 14:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2022-09-01 14:06 - 2021-12-13 13:56 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1431274286-1451116530-715054827-1001 2022-09-01 14:06 - 2021-04-29 20:58 - 000002424 _____ C:\Users\adeli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2022-09-01 14:06 - 2020-11-28 21:00 - 000003378 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1431274286-1451116530-715054827-1001 2022-08-28 23:41 - 2020-11-28 20:24 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2022-08-28 17:58 - 2018-12-08 20:23 - 000000000 ____D C:\Users\adeli\AppData\Local\D3DSCache 2022-08-27 14:03 - 2020-06-21 19:54 - 000002449 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-08-27 13:55 - 2018-11-27 20:35 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2022-08-27 13:54 - 2020-11-28 21:00 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2022-08-26 19:23 - 2017-11-10 16:10 - 000000000 ____D C:\Program Files\HP 2022-08-23 13:10 - 2020-11-28 21:00 - 000003690 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-08-23 13:10 - 2020-11-28 21:00 - 000003566 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2022-08-20 13:08 - 2020-11-28 20:46 - 001924206 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2022-08-20 13:08 - 2019-12-07 16:49 - 000833138 _____ C:\WINDOWS\system32\perfh00C.dat 2022-08-20 13:08 - 2019-12-07 16:49 - 000167868 _____ C:\WINDOWS\system32\perfc00C.dat 2022-08-20 13:08 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF 2022-08-20 13:05 - 2020-11-28 20:33 - 000000000 ____D C:\Users\adeli 2022-08-20 13:00 - 2020-11-28 21:00 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2022-08-20 13:00 - 2020-11-28 20:24 - 000008192 ___SH C:\DumpStack.log.tmp 2022-08-20 13:00 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState 2022-08-13 14:23 - 2020-02-26 18:05 - 000000000 ____D C:\Users\adeli\AppData\Local\cache 2022-08-10 16:29 - 2019-12-07 11:03 - 001048576 _____ C:\WINDOWS\system32\config\BBI 2022-08-10 16:29 - 2018-11-27 15:06 - 000065536 _____ C:\WINDOWS\psp_storage.bin 2022-08-10 16:15 - 2020-11-28 20:24 - 000368208 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2022-08-10 16:12 - 2020-11-28 19:04 - 000000000 ____D C:\WINDOWS\HoloShell 2022-08-10 16:12 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2022-08-10 16:12 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2022-08-10 16:12 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2022-08-10 16:12 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2022-08-10 16:12 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources 2022-08-10 16:12 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2022-08-10 16:12 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2022-08-10 16:12 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2022-08-10 16:12 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2022-08-10 16:12 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences 2022-08-10 16:12 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2022-08-10 14:00 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2022-08-10 13:44 - 2020-11-28 20:29 - 003011072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2022-08-10 13:01 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates 2022-08-10 12:58 - 2018-11-27 21:54 - 000000000 ____D C:\WINDOWS\system32\MRT 2022-08-10 12:53 - 2018-11-27 21:54 - 144534560 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2022-08-06 18:07 - 2020-11-28 21:00 - 000000000 ____D C:\WINDOWS\system32\Tasks\Hewlett-Packard ==================== Fichiers à la racine de certains dossiers ======== 2022-08-28 18:06 - 2022-08-28 18:06 - 000000081 _____ () C:\Users\adeli\AppData\Roaming\nuvotonISP.lua ==================== SigCheckExt ========================= 2018-11-27 15:09 - 2017-08-28 10:54 - 000050960 _____ C:\WINDOWS\system32\rtl8723b_mp_chip_bt40_fw_asic_rom_patch_new.dll 2018-11-27 15:08 - 2013-04-02 00:19 - 000574464 _____ (Realtek Semiconductor Corp. ) C:\WINDOWS\system32\rtl8723de.dll 2018-11-27 15:09 - 2017-08-28 10:54 - 000054192 _____ C:\WINDOWS\system32\rtl8723d_mp_chip_bt40_fw_asic_rom_patch_new.dll 2018-11-27 15:09 - 2017-08-28 10:54 - 000039420 _____ C:\WINDOWS\system32\rtl8821c_mp_chip_bt40_fw_asic_rom_patch_new.dll 2018-11-27 15:09 - 2017-08-28 10:54 - 000046708 _____ C:\WINDOWS\system32\rtl8822b_mp_chip_bt40_fw_asic_rom_patch_new.dll 2017-01-28 00:01 - 2017-01-28 00:01 - 000322560 _____ C:\WINDOWS\system32\vulkan-1-1-0-39-1.dll 2017-01-28 00:02 - 2017-01-28 00:02 - 000118272 _____ C:\WINDOWS\system32\vulkaninfo-1-1-0-39-1.exe 2018-11-27 15:09 - 2016-09-20 20:00 - 000001156 _____ C:\WINDOWS\PidVid_List.dll 2018-11-27 15:09 - 2019-07-22 15:39 - 000049936 _____ C:\WINDOWS\rtl8723b_mp_chip_bt40_fw_asic_rom_patch_new.dll 2019-07-22 15:39 - 2019-07-22 15:39 - 000049884 _____ C:\WINDOWS\rtl8723b_mp_chip_bt40_fw_asic_rom_patch_new_s1.dll 2018-11-27 15:09 - 2019-07-22 15:39 - 000060312 _____ C:\WINDOWS\rtl8723d_mp_chip_bt40_fw_asic_rom_patch_new.dll 2018-11-27 15:09 - 2019-07-22 15:39 - 000048404 _____ C:\WINDOWS\rtl8821c_mp_chip_bt40_fw_asic_rom_patch_new.dll 2018-11-27 15:09 - 2019-07-22 15:39 - 000049580 _____ C:\WINDOWS\rtl8822b_mp_chip_bt40_fw_asic_rom_patch_new.dll 2019-07-22 15:39 - 2019-07-22 15:39 - 000054736 _____ C:\WINDOWS\rtl8822c_mp_chip_bt40_fw_asic_rom_patch_new.dll 2018-11-27 15:08 - 2010-12-01 10:31 - 000451072 _____ C:\WINDOWS\SysWOW64\ISSRemoveSP.exe 2017-01-28 00:04 - 2017-01-28 00:04 - 000326656 _____ C:\WINDOWS\SysWOW64\vulkan-1-1-0-39-1.dll 2017-01-28 00:05 - 2017-01-28 00:05 - 000103936 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-1-0-39-1.exe 2022-08-20 14:48 - 2022-08-20 14:49 - 241917634 _____ (RomStation ) C:\Users\adeli\Downloads\romstation-windows-x86.exe ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== BCD ================================ Gestionnaire de d‚marrage du microprogramme ------------------------------------------- identificateur {fwbootmgr} displayorder {bootmgr} {9247ef95-f73d-11e8-81d3-cdc5d3ec3948} {fc884137-f28c-11e8-b738-f816bb75848b} {fc884138-f28c-11e8-b738-f816bb75848b} timeout 0 Gestionnaire de d‚marrage Windows --------------------------------- identificateur {bootmgr} device partition=\Device\HarddiskVolume1 path \EFI\Microsoft\Boot\bootmgfw.efi description Windows Boot Manager locale fr-FR inherit {globalsettings} default {current} resumeobject {da897696-31a6-11eb-aa99-d948c4c6aaf1} displayorder {current} toolsdisplayorder {memdiag} timeout 30 Application logicielle (101fffff) -------------------------------- identificateur {9247ef95-f73d-11e8-81d3-cdc5d3ec3948} description Internal Hard Disk or Solid State Disk Application logicielle (101fffff) -------------------------------- identificateur {fc884137-f28c-11e8-b738-f816bb75848b} description EFI USB Device Application logicielle (101fffff) -------------------------------- identificateur {fc884138-f28c-11e8-b738-f816bb75848b} description EFI DVD/CDROM Chargeur de d‚marrage Windows ----------------------------- identificateur {32a79438-31a7-11eb-b1c7-f1bef89ec28d} device ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{32a79439-31a7-11eb-b1c7-f1bef89ec28d} path \windows\system32\winload.efi description Windows Recovery Environment locale fr-FR inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{32a79439-31a7-11eb-b1c7-f1bef89ec28d} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Chargeur de d‚marrage Windows ----------------------------- identificateur {current} device partition=C: path \WINDOWS\system32\winload.efi description Windows 10 locale fr-FR inherit {bootloadersettings} recoverysequence {32a79438-31a7-11eb-b1c7-f1bef89ec28d} displaymessageoverride Recovery recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \WINDOWS resumeobject {da897696-31a6-11eb-aa99-d948c4c6aaf1} nx OptIn bootmenupolicy Standard Reprendre … partir de la mise en veille prolong‚e ------------------------------------------------- identificateur {da897696-31a6-11eb-aa99-d948c4c6aaf1} device partition=C: path \WINDOWS\system32\winresume.efi description Windows Resume Application locale fr-FR inherit {resumeloadersettings} recoverysequence {32a79438-31a7-11eb-b1c7-f1bef89ec28d} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Testeur de m‚moire Windows -------------------------- identificateur {memdiag} device partition=\Device\HarddiskVolume1 path \EFI\Microsoft\Boot\memtest.efi description Diagnostics m‚moire Windows locale fr-FR inherit {globalsettings} badmemoryaccess Yes ParamŠtres EMS -------------- identificateur {emssettings} bootems No ParamŠtres du d‚bogueur ----------------------- identificateur {dbgsettings} debugtype Local Erreurs de m‚moire RAM ---------------------- identificateur {badmemory} ParamŠtres globaux ------------------ identificateur {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} ParamŠtres du chargeur de d‚marrage ----------------------------------- identificateur {bootloadersettings} inherit {globalsettings} {hypervisorsettings} ParamŠtres de l'hyperviseur ------------------- identificateur {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 ParamŠtres du chargeur de reprise --------------------------------- identificateur {resumeloadersettings} inherit {globalsettings} Options de p‚riph‚rique ----------------------- identificateur {32a79439-31a7-11eb-b1c7-f1bef89ec28d} description Windows Recovery ramdisksdidevice partition=\Device\HarddiskVolume4 ramdisksdipath \Recovery\WindowsRE\boot.sdi ==================== Fin de FRST.txt ========================