Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 30-08-2022 Exécuté par Marc (administrateur) sur MARCPC (06-09-2022 22:49:25) Exécuté depuis C:\Users\Marc\Desktop Profils chargés: Marc Plate-forme: Microsoft Windows 10 Professionnel Version 2004 19041.746 (X64) Langue: Français (France) Navigateur par défaut: Chrome Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Acronis International GmbH -> ) C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\TibMounter\tib_mounter_monitor.exe (AsusUpdateCheck.exe ->) (ASUSTeK Computer Inc. -> ) C:\Windows\System32\AsusDownLoadLicense.exe (C:\Program Files (x86)\Acronis\Agent\aakore.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\bin\bckp_amgr.exe (C:\Program Files (x86)\Acronis\Agent\aakore.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\bin\grpm-mini.exe (C:\Program Files (x86)\Acronis\Agent\aakore.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\bin\monitoring-mini.exe (C:\Program Files (x86)\Acronis\Agent\aakore.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\bin\task-manager.exe (C:\Program Files (x86)\Acronis\Agent\aakore.exe ->) (Acronis International GmbH -> Acronis International GmbH.) C:\Program Files (x86)\Acronis\Agent\bin\adp-agent.exe (C:\Program Files (x86)\Acronis\Agent\aakore.exe ->) (Acronis International GmbH -> Acronis International GmbH.) C:\Program Files (x86)\Acronis\Agent\bin\updater.exe (C:\Program Files (x86)\Surfshark\Resources\x64\nssm.exe ->) (Surfshark Ltd. -> Surfshark) C:\Program Files (x86)\Surfshark\Surfshark.Service.exe (C:\Program Files (x86)\Surfshark\Resources\x64\nssm.exe ->) (Surfshark Ltd. -> Surfshark) C:\Program Files (x86)\Surfshark\Surfshark.ShadowsocksService.exe (C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe (C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe (C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\MKCHelper.exe (C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCopyAccelerator.exe (explorer.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5> (explorer.exe ->) (Surfshark Ltd. -> Surfshark) C:\Program Files (x86)\Surfshark\Surfshark.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MusNotifyIcon.exe (services.exe ->) (Acronis International GmbH -> ) C:\Program Files (x86)\Common Files\Acronis\ActiveProtection\anti_ransomware_service.exe (services.exe ->) (Acronis International GmbH -> ) C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe (services.exe ->) (Acronis International GmbH -> ) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe (services.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\aakore.exe (services.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe (services.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe (services.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files\Acronis\CyberProtect\cyber-protect-service.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (services.exe ->) (ASUSTeK Computer Inc. -> ) C:\Windows\System32\AsusUpdateCheck.exe (services.exe ->) (DEVGURU Co., Ltd. -> DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_cad1db73e8c782a6\WMIRegistrationService.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe (services.exe ->) (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iaahcic.inf_amd64_778512ee63a728ec\RstMwService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\WirelessKB850NotificationService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\NisSrv.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (philandro Software GmbH -> philandro Software GmbH) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe (services.exe ->) (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe (services.exe ->) (Surfshark Ltd. -> Surfshark) C:\Program Files (x86)\Surfshark\Resources\x64\nssm.exe <2> (services.exe ->) (Synology Inc. -> ) C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe (services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (services.exe ->) (voidtools -> ) C:\Program Files (x86)\Everything\Everything.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_2.2011.11613.0_x64__8wekyb3d8bbwe\Cortana.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\spaceman.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Speech_OneCore\common\SpeechRuntime.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe (svchost.exe ->) (Samsung Electronics Co., Ltd. -> Samsung Electronics.) C:\Program Files (x86)\Samsung\Samsung Magician\Samsung Magician.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [644000 2022-01-05] (Acronis International GmbH -> Acronis International GmbH) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500936 2015-05-26] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [838432 2019-03-27] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM-x32\...\Run: [TrueImageMonitor.exe] => C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [6223200 2022-01-05] (Acronis International GmbH -> ) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard) HKLM-x32\...\Run: [NUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [115048 2011-09-16] (Renesas Electronics Corporation -> Renesas Electronics Corporation) HKLM-x32\...\Run: [AppManHelper] => C:\Program Files (x86)\Avid\Application Manager\AvidAppManHelper.exe [617984 2015-06-09] (Avid Technology, Inc.) [Fichier non signé] HKLM-x32\...\Run: [Everything] => C:\Program Files (x86)\Everything\Everything.exe [1710880 2019-01-26] (voidtools -> ) HKLM-x32\...\Run: [AcronisTibMounterMonitor] => C:\Program Files (x86)\Common Files\Acronis\TibMounter\tib_mounter_monitor.exe [446392 2022-01-05] (Acronis International GmbH -> Acronis International GmbH) HKU\S-1-5-21-1884309661-4178977230-3774313253-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [38274576 2022-08-12] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-1884309661-4178977230-3774313253-1001\...\Run: [Surfshark] => C:\Program Files (x86)\Surfshark\Surfshark.exe [4362704 2020-11-27] (Surfshark Ltd. -> Surfshark) HKU\S-1-5-21-1884309661-4178977230-3774313253-1001\...\Run: [SuuntolinkLauncher] => C:\Users\Marc\AppData\Local\Suuntolink\app-3.1.3\resources\app\LaunchAgents\SuuntolinkLauncher.exe [838768 2020-06-23] (Suunto Oy -> ) HKU\S-1-5-21-1884309661-4178977230-3774313253-1001\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [91591032 2020-04-14] (Skype Software Sarl -> Skype Technologies S.A.) HKU\S-1-5-21-1884309661-4178977230-3774313253-1001\...\Run: [BackupOutlook] => C:\Program Files (x86)\Wisco\BackupOutlook\BackupOutlook.exe [3717232 2013-08-30] (Wisco Computerservice -> Wisco) HKU\S-1-5-21-1884309661-4178977230-3774313253-1001\...\Run: [MicrosoftEdgeAutoLaunch_E0E9BAF864A0DC7753C20802F74DF30B] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3795360 2022-09-02] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-1884309661-4178977230-3774313253-1001\...\MountPoints2: {1984c9fc-1214-11ea-9202-8c89a57f8209} - "F:\LaunchU3.exe" HKU\S-1-5-21-1884309661-4178977230-3774313253-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\ssText3d.scr [224768 2019-12-07] (Microsoft Windows -> Microsoft Corporation) HKLM\...\Print\Monitors\HP 5512 Status Monitor: C:\WINDOWS\system32\hpinksts5512LM.dll [332176 2012-09-12] (Hewlett Packard -> Hewlett-Packard Co.) HKLM\...\Print\Monitors\HP Discovery Port Monitor (HP Officejet 6500 E710a-f): C:\WINDOWS\system32\HPDiscoPM5512.dll [741480 2012-10-17] (Hewlett Packard -> Hewlett-Packard Co.) HKLM\...\Print\Monitors\HP Discovery Port Monitor (HP Officejet 6500 E710n-z): C:\WINDOWS\system32\HPDiscoPM5412.dll [741480 2012-10-17] (Hewlett Packard -> Hewlett-Packard Co.) HKLM\...\Print\Monitors\PDF Architect 7 Monitor: C:\Windows\system32\spool\DRIVERS\x64\pdf architect_pdfpmon_v.4.12.26.3.dll [932984 2020-09-25] (PDF Tools AG -> PDF Tools AG (hxxp://www.pdf-tools.com)) HKLM\...\Print\Monitors\pdfcmon: C:\WINDOWS\system32\pdfcmon.dll [116736 2019-11-28] (pdfforge GmbH) [Fichier non signé] HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\104.0.5112.102\Installer\chrmstp.exe [2022-09-06] (Google LLC -> Google LLC) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AnyDesk.lnk [2020-01-13] ShortcutTarget: AnyDesk.lnk -> C:\Program Files (x86)\AnyDesk\AnyDesk.exe (philandro Software GmbH -> philandro Software GmbH) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Avid Application Manager.lnk [2019-11-28] ShortcutTarget: Avid Application Manager.lnk -> C:\Windows\Installer\{A59C0B17-6673-46E6-9E00-BB25E755A299}\NewShortcut1_E1E0FF1FC1474601A40EFEF248F11D43.exe (Flexera Software LLC) [Fichier non signé] Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Philips GoGear SA4RGA Device Manager.lnk [2020-01-27] ShortcutTarget: Philips GoGear SA4RGA Device Manager.lnk -> C:\Program Files (x86)\Philips\GoGear SA4RGA Device Manager\GoGear_SA4RGA_DeviceManager.exe (Koninklijke Philips Electronics N.V. -> Philips) Startup: C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Alertes de surveillance de l'encre - HP Officejet 6500 E710a-f.lnk [2020-12-31] ShortcutAndArgument: Alertes de surveillance de l'encre - HP Officejet 6500 E710a-f.lnk -> C:\WINDOWS\system32\RunDll32.exe => "C:\Program Files\HP\HP Officejet 6500 E710a-f\bin\HPStatusBL.dll",RunDLLEntry SERIALNUMBER=CN15V321HK05JZ;CONNECTION=USB;MONITOR=1; Startup: C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Envoyer à OneNote.lnk [2020-01-16] ShortcutTarget: Envoyer à OneNote.lnk -> C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) GroupPolicy: Restriction ? <==== ATTENTION Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {01450EA2-81E8-4E4B-9ADE-2EAA846B58B0} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-08-12] (Piriform Software Ltd -> Piriform) Task: {0ACB176E-3A64-4A16-8898-4D07BD8F47E0} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [1910128 2020-10-22] (Microsoft Corporation -> Microsoft Corporation) Task: {0FFD7B78-5048-4C11-8E85-799928018C0B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-09-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {132B710A-649E-4037-9124-0CBDBED161D2} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2019-11-28] (Google Inc -> Google Inc.) Task: {195E369E-BBA5-44B6-A27A-576E4CFFA61A} - System32\Tasks\CCleanerSkipUAC - Marc => C:\Program Files\CCleaner\CCleaner.exe [31990800 2022-08-12] (Piriform Software Ltd -> Piriform Software Ltd) Task: {21614497-7B02-47D2-848C-5051037B15B5} - \Microsoft_Hardware_Launch_itype_exe -> Pas de fichier <==== ATTENTION Task: {23B6E137-327C-4EE1-B8A9-8288463B61B1} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [1626328 2014-01-23] (Microsoft Corporation -> Microsoft Corporation) Task: {2DDE6448-5E57-4082-9CD4-EA6074CA81A8} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2434424 2020-10-22] (Microsoft Corporation -> Microsoft Corporation) Task: {345CC112-3840-4117-BB96-B239C667C584} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\IntelPTTEKRecertification.exe [818008 2021-09-15] (Intel Corporation -> Intel(R) Corporation) Task: {37C2B901-F2EA-4CD5-9416-C5E17D39B700} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-09-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {4FC9FC27-6EFB-49F1-9418-0EE920927ED8} - System32\Tasks\Avira_Antivirus_Systray => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe /min (Pas de fichier) Task: {56B3213F-4C05-414C-B671-EB55852E8798} - \Microsoft_Hardware_Launch_mousekeyboardcenter_exe -> Pas de fichier <==== ATTENTION Task: {6100DADF-99D8-409B-A375-1B373E88832C} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation) Task: {6904AC8A-686A-4065-BCD5-8E6844D58C7C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-09-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {69AA70CF-3429-47FB-89AC-4BE9A88E3BB9} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation) Task: {7701B4DA-5FE7-4DF8-BA96-CF7C8B97A025} - System32\Tasks\SamsungMagician => C:\Program Files (x86)\Samsung\Samsung Magician\Samsung Magician.exe [6174816 2016-01-07] (Samsung Electronics Co., Ltd. -> Samsung Electronics.) Task: {8253C838-0865-41E5-A2C4-963058892C8B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-09-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {89B792F6-CE88-4243-A896-59AFF3D13F49} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2019-11-28] (Google Inc -> Google Inc.) Task: {92A96108-A0CE-4163-A398-B3BCD78B0079} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB" Task: {AA063379-F6E2-4156-A747-799ACD3933CF} - \Microsoft_Hardware_Launch_ipoint_exe -> Pas de fichier <==== ATTENTION Task: {B9B6FB4B-6273-4D88-A525-9B158035E27D} - System32\Tasks\Microsoft_MKC_Logon_Task_ceip.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ceip.exe [32624 2020-10-22] (Microsoft Corporation -> Microsoft) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3: <==== ATTENTION (Restriction - Zones) ProxyServer: [.DEFAULT] => 127.0.0.1:1080 Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704 2011-08-30] (Apple Inc. -> Apple Inc.) Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [132968 2011-08-30] (Apple Inc. -> Apple Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{1e502071-2970-47df-b82c-5fb278ba8c7c}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{253ecd10-36de-4203-93e2-85d434af57de}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{40D0EB03-642B-4BA7-BCEA-C3F9F535BE5A}: [NameServer] 162.252.172.57 149.154.159.92 Tcpip\..\Interfaces\{ba6550ed-fa36-4115-bad9-e749131d41e5}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{d83b20ac-2956-4dbb-8956-75ebb2b819e9}: [DhcpNameServer] 192.168.1.1 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\Marc\AppData\Local\Microsoft\Edge\User Data\Default [2022-09-06] FireFox: ======== FF DefaultProfile: 4byowv6t.default FF ProfilePath: C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\4byowv6t.default [2022-09-06] FF DownloadDir: H:\Reception FF Notifications: Mozilla\Firefox\Profiles\4byowv6t.default -> hxxps://www.tameteo.com; hxxps://messages.google.com; hxxps://www.musicdiffusion.com; hxxps://www.facebook.com FF Extension: (Avira Browser Safety) - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\4byowv6t.default\Extensions\abs@avira.com [2019-11-28] FF Extension: (Protection Web Avira) - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\4byowv6t.default\Extensions\abs@avira.com.xpi [2019-11-14] FF Extension: (AdSwap) - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\4byowv6t.default\Extensions\{4582aaa7-9688-4038-a9ef-06345fa0f400}.xpi [2019-11-13] FF Extension: (Surfshark VPN proxy) - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\4byowv6t.default\Extensions\{732216ec-0dab-43bb-ac85-4b5e1977599d}.xpi [2019-11-05] FF Extension: (Video DownloadHelper) - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\4byowv6t.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2019-09-27] FF ProfilePath: C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\foxl963v.default-release-1601650998019 [2022-09-06] FF Extension: (Video DownloadHelper) - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\foxl963v.default-release-1601650998019\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2020-12-16] FF HKLM\...\Firefox\Extensions: [pdf_architect_7_conv_v.2@pdfforge.org] - C:\Program Files\PDF Architect 7\creator\plugins\FirefoxAddin\pdf_architect_7_conv_v.2@pdfforge.org.xpi => non trouvé(e) FF HKLM-x32\...\Firefox\Extensions: [pdf_architect_7_conv_v.2@pdfforge.org] - C:\Program Files\PDF Architect 7\creator\plugins\FirefoxAddin\pdf_architect_7_conv_v.2@pdfforge.org.xpi => non trouvé(e) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-03-09] (Adobe Systems Incorporated -> Adobe Systems) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-07-18] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-10-27] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [Fichier non signé] FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-10-27] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [Fichier non signé] FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-03-09] (Adobe Systems Incorporated -> Adobe Systems) Chrome: ======= CHR Profile: C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default [2022-09-06] CHR Extension: (Extension Surfshark VPN) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ailoabdmgclmfmhdagmlohpjlbpffblp [2022-09-06] CHR Extension: (AdGuard AdBlocker) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgnkhhnnamicmpeenaelnjfhikgbkllg [2022-09-06] CHR Extension: (uBlock Origin) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2022-09-06] CHR Extension: (Video Downloader professional) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\elicpjhcidhpjomhibiffojpinpmmpil [2022-09-06] CHR Extension: (Google Docs hors connexion) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-09-06] CHR Extension: (Video DownloadHelper) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjnegcaeklhafolokijcfjliaokphfk [2022-09-06] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-09-06] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 aakore; C:\Program Files (x86)\Acronis\Agent\aakore.exe [9022120 2022-01-05] (Acronis International GmbH -> Acronis International GmbH) R2 AcronisActiveProtectionService; C:\Program Files (x86)\Common Files\Acronis\ActiveProtection\anti_ransomware_service.exe [12978544 2022-01-05] (Acronis International GmbH -> ) R2 AcronisCyberProtectionService; C:\Program Files\Acronis\CyberProtect\cyber-protect-service.exe [1425256 2022-01-05] (Acronis International GmbH -> Acronis International GmbH) R2 AcrSch2Svc; C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe [1052280 2022-01-05] (Acronis International GmbH -> Acronis International GmbH) R2 afcdpsrv; C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe [6391536 2022-09-06] (Acronis International GmbH -> ) R2 AnyDesk; C:\Program Files (x86)\AnyDesk\AnyDesk.exe [3668944 2020-08-08] (philandro Software GmbH -> philandro Software GmbH) R2 AsusUpdateCheck; C:\WINDOWS\System32\AsusUpdateCheck.exe [1097624 2022-09-06] (ASUSTeK Computer Inc. -> ) R2 Everything; C:\Program Files (x86)\Everything\Everything.exe [1710880 2019-01-26] (voidtools -> ) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [285192 2020-10-28] (HP Inc. -> HP Inc.) S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [6960640 2019-11-28] (Malwarebytes Inc -> Malwarebytes) R2 mmsminisrv; C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe [4882992 2022-01-05] (Acronis International GmbH -> Acronis International GmbH) S3 mobile_backup_server; C:\Program Files (x86)\Common Files\Acronis\MobileBackupServer\mobile_backup_server.exe [3004128 2019-11-18] (Acronis International GmbH -> Acronis International GmbH) S3 mobile_backup_status_server; C:\Program Files (x86)\Acronis\TrueImageHome\mobile_backup_status_server.exe [2130296 2022-01-05] (Acronis International GmbH -> ) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5198064 2021-01-13] (Microsoft Windows Publisher -> Microsoft Corporation) S3 ss_conn_launcher_service; C:\WINDOWS\System32\Samsung\EasySetup\ss_conn_launcher.exe [182128 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R2 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [752224 2019-09-24] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) R2 ss_conn_service2; C:\Program Files (x86)\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe [780328 2019-09-24] (DEVGURU Co., Ltd. -> DEVGURU Co., LTD.) R2 Surfshark Service; C:\Program Files (x86)\Surfshark\Resources\x64\nssm.exe [436688 2020-06-15] (Surfshark Ltd. -> Surfshark) R2 Surfshark Shadowsocks Service; C:\Program Files (x86)\Surfshark\Resources\x64\nssm.exe [436688 2020-06-15] (Surfshark Ltd. -> Surfshark) R2 syncagentsrv; C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe [7402528 2022-01-05] (Acronis International GmbH -> ) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12757520 2020-12-14] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) S3 Tib Mounter Service; C:\Program Files (x86)\Common Files\Acronis\TibMounter64\tib_mounter_service.exe [5910328 2022-01-05] (Acronis International GmbH -> Acronis International GmbH) R2 UsbClientService; C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe [253912 2019-10-30] (Synology Inc. -> ) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2205.7-0\NisSrv.exe [3120992 2022-09-06] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2205.7-0\MsMpEng.exe [133544 2022-09-06] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WirelessKB850NotificationService; C:\WINDOWS\system32\WirelessKB850NotificationService.exe [176624 2018-05-14] (Microsoft Corporation -> Microsoft Corporation) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 BdDci; C:\WINDOWS\system32\DRIVERS\bddci.sys [367096 2020-11-23] (Bitdefender SRL -> Bitdefender) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Fichier non signé] R3 busenum; C:\WINDOWS\System32\drivers\busenum.sys [57824 2012-08-03] (Synology Inc. -> Windows (R) Win 7 DDK provider) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [159600 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R2 file_protector; C:\WINDOWS\System32\DRIVERS\file_protector.sys [726160 2022-09-06] (Acronis International GmbH -> Acronis International GmbH) R0 file_tracker; C:\WINDOWS\System32\DRIVERS\file_tracker.sys [392840 2022-09-06] (Acronis International GmbH -> Acronis International GmbH) R0 fltsrv; C:\WINDOWS\System32\DRIVERS\fltsrv.sys [183944 2020-12-02] (Acronis International GmbH -> Acronis International GmbH) R1 HWiNFO32; C:\WINDOWS\system32\drivers\HWiNFO64A.SYS [27552 2020-12-16] (Martin Malik - REALiX -> REALiX(tm)) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [20936 2019-11-28] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MpKslb6d01db2; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{824BB851-CFD6-4E65-AC66-82EB672AD11A}\MpKslDrv.sys [141576 2022-09-06] (Microsoft Windows -> Microsoft Corporation) S3 MpKslfe24d72e; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{824BB851-CFD6-4E65-AC66-82EB672AD11A}\MpKslDrv.sys [141576 2022-09-06] (Microsoft Windows -> Microsoft Corporation) S0 ngelam; C:\WINDOWS\System32\drivers\ngelam.sys [16344 2022-01-05] (Microsoft Windows Early Launch Anti-malware Publisher -> Acronis International GmbH) R1 ngscan; C:\WINDOWS\System32\DRIVERS\ngscan.sys [179104 2022-01-05] (Acronis International GmbH -> Acronis International GmbH) R2 npf; C:\Windows\system32\drivers\npf.sys [36600 2017-09-10] (Riverbed Technology, Inc. -> Riverbed Technology, Inc.) R3 RDID1117; C:\WINDOWS\system32\Drivers\RDWM1117.SYS [182296 2021-09-27] (Microsoft Windows Hardware Compatibility Publisher -> Roland Corporation) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167280 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 ss_conn_usb_driver2; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver2.sys [43376 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 SurfsharkSplitTunnelDriver; C:\Program Files (x86)\Surfshark\Resources\x64\SurfsharkSplitTunnelCalloutDriver.sys [39648 2020-06-15] (Microsoft Windows Hardware Compatibility Publisher -> ) R3 tapsurfshark; C:\WINDOWS\System32\drivers\tapsurfshark.sys [38728 2019-05-22] (WDKTestCert Lenovo,131775874531219913 -> The OpenVPN Project) S3 tib; C:\WINDOWS\system32\DRIVERS\tib.sys [887032 2022-09-06] (Acronis International GmbH -> Acronis International GmbH) R2 tib_mounter; C:\WINDOWS\system32\DRIVERS\tib_mounter.sys [175648 2022-09-06] (Acronis International GmbH -> Acronis International GmbH) S3 tnd; C:\WINDOWS\system32\DRIVERS\tnd.sys [694920 2022-09-06] (Acronis International GmbH -> Acronis International GmbH) R2 virtual_file; C:\WINDOWS\System32\DRIVERS\virtual_file.sys [334984 2022-09-06] (Acronis International GmbH -> Acronis International GmbH) R0 volume_tracker; C:\WINDOWS\System32\DRIVERS\volume_tracker.sys [251016 2022-09-06] (Acronis International GmbH -> Acronis International GmbH) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49576 2022-09-06] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [452856 2022-09-06] (Microsoft Windows -> Microsoft Corporation) S3 wdm_usb; C:\WINDOWS\system32\DRIVERS\usb2ser.sys [151184 2016-07-15] (NGO -> MBB) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [91384 2022-09-06] (Microsoft Windows -> Microsoft Corporation) R3 wintunshark; C:\WINDOWS\system32\DRIVERS\wintunshark.sys [31096 2020-09-17] (WDKTestCert nikod,132409123292239223 -> Surfshark Ltd) S3 WirelessKeyboardFilter; C:\WINDOWS\System32\drivers\WirelessKeyboardFilter.sys [49336 2018-03-11] (Microsoft Corporation -> Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-09-06 22:49 - 2022-09-06 22:49 - 000034226 _____ C:\Users\Marc\Desktop\FRST.txt 2022-09-06 22:49 - 2022-09-06 22:49 - 000000000 ____D C:\FRST 2022-09-06 22:45 - 2022-09-06 22:45 - 000519442 _____ C:\Users\Marc\Desktop\ZHPDiag.txt 2022-09-06 22:43 - 2022-09-06 22:43 - 002371072 _____ (Farbar) C:\Users\Marc\Desktop\FRST64.exe 2022-09-06 22:06 - 2022-09-06 22:06 - 000000000 ____D C:\WINDOWS\CSC 2022-09-06 22:06 - 2022-09-06 19:39 - 000008192 ___SH C:\DumpStack.log.tmp 2022-09-06 19:33 - 2022-09-06 19:33 - 000000000 ___HD C:\$WinREAgent 2022-09-06 19:03 - 2022-09-06 19:03 - 003307208 _____ (Nicolas Coolman) C:\Users\Marc\Desktop\ZHPDiag3.exe 2022-09-06 18:55 - 2022-09-06 18:55 - 000000000 ____D C:\Program Files\Bonjour 2022-09-06 18:55 - 2022-09-06 18:55 - 000000000 ____D C:\Program Files (x86)\Bonjour 2022-09-06 18:55 - 2022-01-05 14:19 - 000179104 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\ngscan.sys 2022-09-06 18:46 - 2022-09-06 18:46 - 000000000 ____D C:\Users\Marc\AppData\Local\OneDrive 2022-09-06 18:42 - 2022-09-06 18:42 - 000002299 _____ C:\Users\Marc\Desktop\Google Chrome.lnk 2022-09-06 18:37 - 2022-09-06 18:37 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avira 2022-09-06 18:27 - 2022-09-06 18:27 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1884309661-4178977230-3774313253-1001 2022-09-06 18:23 - 2022-09-06 18:23 - 000002882 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - Marc ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-09-06 22:45 - 2020-10-05 14:55 - 000000000 ____D C:\Users\Marc\Downloads\FormatFactory2020_10_05 2022-09-06 22:45 - 2020-08-24 10:56 - 000000000 ____D C:\Users\Marc\Downloads\FormatFactory2020_08_24 2022-09-06 22:45 - 2020-08-22 16:47 - 000000000 ____D C:\Users\Marc\Downloads\FormatFactory2020_08_22 2022-09-06 22:45 - 2020-03-21 21:47 - 000000000 ____D C:\Users\Marc\Downloads\FormatFactory2020_03_21 2022-09-06 22:45 - 2020-02-20 14:51 - 000000000 ____D C:\Users\Marc\Downloads\FormatFactory2020_02_20 2022-09-06 22:45 - 2020-01-22 17:53 - 000000000 ____D C:\Users\Marc\Downloads\FormatFactory2020_01_22 2022-09-06 22:45 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState 2022-09-06 22:45 - 2019-11-28 19:50 - 000000000 ____D C:\Users\Marc\AppData\Roaming\ZHP 2022-09-06 22:44 - 2020-11-05 04:36 - 000004176 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{42B0454E-F3AA-4953-94A8-90CBAD59F792} 2022-09-06 22:38 - 2020-11-05 04:27 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2022-09-06 22:38 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-09-06 22:15 - 2020-06-10 11:06 - 000002425 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-09-06 22:15 - 2020-06-10 11:06 - 000002263 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2022-09-06 22:14 - 2019-11-28 00:17 - 000000000 ____D C:\Program Files (x86)\Google 2022-09-06 22:10 - 2020-11-05 04:36 - 000003690 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-09-06 22:09 - 2020-11-05 04:36 - 000003590 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2022-09-06 22:09 - 2020-11-05 04:36 - 000003466 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2022-09-06 19:49 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2022-09-06 19:49 - 2019-12-03 21:23 - 000000000 ____D C:\Users\Marc\AppData\Local\ElevatedDiagnostics 2022-09-06 19:46 - 2020-11-05 04:31 - 001775002 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2022-09-06 19:46 - 2019-12-07 16:50 - 000791762 _____ C:\WINDOWS\system32\perfh00C.dat 2022-09-06 19:46 - 2019-12-07 16:50 - 000149928 _____ C:\WINDOWS\system32\perfc00C.dat 2022-09-06 19:46 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF 2022-09-06 19:41 - 2020-11-07 02:34 - 000000000 ____D C:\Program Files\CCleaner 2022-09-06 19:40 - 2020-12-18 13:41 - 000003840 _____ C:\WINDOWS\system32\Tasks\Intel PTT EK Recertification 2022-09-06 19:39 - 2020-12-18 18:14 - 000333224 _____ () C:\WINDOWS\system32\AsusDownLoadLicense.exe 2022-09-06 19:39 - 2020-12-18 17:54 - 001136496 _____ C:\WINDOWS\system32\wpbbin.exe 2022-09-06 19:39 - 2020-12-18 17:54 - 001097624 _____ C:\WINDOWS\system32\AsusUpdateCheck.exe 2022-09-06 19:39 - 2020-11-05 04:36 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2022-09-06 19:39 - 2019-11-28 16:53 - 000000000 ____D C:\Program Files (x86)\TeamViewer 2022-09-06 19:39 - 2019-11-27 19:15 - 000000000 ____D C:\ProgramData\NVIDIA 2022-09-06 19:32 - 2020-09-30 01:42 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2022-09-06 19:31 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2022-09-06 19:30 - 2019-11-27 22:27 - 000000000 ____D C:\WINDOWS\system32\MRT 2022-09-06 19:28 - 2019-11-28 01:26 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2022-09-06 19:28 - 2019-11-27 22:27 - 144534560 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2022-09-06 19:21 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2022-09-06 18:55 - 2020-12-02 12:49 - 000000000 ____D C:\Program Files\Common Files\Acronis 2022-09-06 18:55 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2022-09-06 18:54 - 2019-11-28 00:56 - 000887032 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\tib.sys 2022-09-06 18:54 - 2019-11-28 00:56 - 000726160 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\file_protector.sys 2022-09-06 18:54 - 2019-11-28 00:56 - 000694920 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\tnd.sys 2022-09-06 18:54 - 2019-11-28 00:56 - 000392840 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\file_tracker.sys 2022-09-06 18:54 - 2019-11-28 00:56 - 000391816 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\snapman.sys 2022-09-06 18:54 - 2019-11-28 00:56 - 000334984 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\virtual_file.sys 2022-09-06 18:54 - 2019-11-28 00:56 - 000251016 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\volume_tracker.sys 2022-09-06 18:54 - 2019-11-28 00:56 - 000175648 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\tib_mounter.sys 2022-09-06 18:54 - 2019-11-28 00:56 - 000001286 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis True Image.lnk 2022-09-06 18:54 - 2019-11-28 00:56 - 000001274 _____ C:\Users\Public\Desktop\Acronis True Image.lnk 2022-09-06 18:54 - 2019-11-28 00:50 - 000000000 ____D C:\ProgramData\Acronis 2022-09-06 18:49 - 2019-11-27 17:43 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2022-09-06 18:44 - 2019-11-28 01:59 - 000000000 ____D C:\Users\Marc\AppData\Local\D3DSCache 2022-09-06 18:39 - 2019-11-28 09:51 - 000000000 ____D C:\Program Files (x86)\Avira 2022-09-06 18:38 - 2019-11-28 09:51 - 000000000 ____D C:\ProgramData\Avira 2022-09-06 18:37 - 2019-11-28 01:43 - 000000000 ____D C:\ProgramData\Package Cache 2022-09-06 18:37 - 2019-11-27 22:14 - 000803176 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2022-09-06 18:27 - 2020-11-05 04:36 - 000003360 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1884309661-4178977230-3774313253-1001 2022-09-06 18:27 - 2020-11-05 04:29 - 000002438 _____ C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2022-09-06 18:26 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2022-09-06 18:26 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2022-09-06 18:26 - 2019-11-27 17:57 - 000000000 ____D C:\ProgramData\Packages 2022-09-06 18:23 - 2020-11-05 04:36 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2022-09-06 18:23 - 2020-11-05 04:29 - 000000000 ____D C:\Users\Marc ==================== Fichiers à la racine de certains dossiers ======== 2019-11-28 01:39 - 2019-11-28 01:39 - 000000171 _____ () C:\Users\Marc\AppData\Roaming\822f02e4-9e9a-4077-a765-71edfca16ad0 2019-11-28 15:34 - 2019-11-28 15:34 - 001236762 _____ () C:\Users\Marc\AppData\Roaming\AvidApplicationManager_Install.log 2020-04-03 13:23 - 2020-10-15 10:28 - 000008192 _____ () C:\Users\Marc\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2020-12-18 19:16 - 2020-12-18 19:16 - 000007597 _____ () C:\Users\Marc\AppData\Local\Resmon.ResmonCfg ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================