Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 15-10-2022 Exécuté par hp (administrateur) sur ICORE5 (Gigabyte Technology Co., Ltd. B85M-HD3 R4) (15-10-2022 20:05:25) Exécuté depuis C:\Users\hp\Desktop Profils chargés: hp Plate-forme: Microsoft Windows 10 Famille Version 21H2 19044.2130 (X64) Langue: Français (France) Navigateur par défaut: FF Mode d'amorçage: Safe Mode (with Networking) ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (C:\Program Files\Mozilla Firefox\firefox.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MbamBgNativeMsg.exe (C:\Windows\HelpPane.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <14> (explorer.exe ->) (Google LLC -> ) C:\Program Files\Google\Drive File Stream\65.0.2.0\crashpad_handler.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <11> (services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MsMpEng.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\HelpPane.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3476184 2022-07-27] (Adobe Inc. -> Adobe Systems, Incorporated) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [19572536 2021-07-20] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [LogiOptions] => C:\Program Files\Logitech\LogiOptions\LogiOptions.exe [1690368 2022-07-22] (Logitech Inc -> Logitech, Inc.) HKLM\...\Run: [LogiBolt] => C:\Program Files\Logi\LogiBolt\LogiBolt.exe [22423104 2021-12-14] (Logitech Inc -> Logitech) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [11186400 2022-10-10] (Dropbox, Inc -> Dropbox, Inc.) HKLM-x32\...\Run: [NETGEAR USB Control Center] => C:\Program Files (x86)\NETGEAR\USB Control Center\Control Center.exe [4114944 2013-07-29] () [Fichier non signé] HKU\S-1-5-21-2340712917-288545405-3420014623-1001\...\Run: [LogiBolt] => C:\Program Files\Logi\LogiBolt\LogiBolt.exe [22423104 2021-12-14] (Logitech Inc -> Logitech) HKU\S-1-5-21-2340712917-288545405-3420014623-1001\...\Run: [MicrosoftEdgeAutoLaunch_F072E8F080C5A31FE150A3CA4B35FB6A] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3852232 2022-10-10] (Microsoft Corporation -> Microsoft Corporation) HKLM\...\Windows x64\Print Processors\Lexmark 5600-6600 Series Print Processor: lxdudrpp.dll HKLM\...\Print\Monitors\HP Universal Port Monitor: C:\WINDOWS\system32\hpbprtmon.dll [423936 2014-06-11] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\106.0.5249.119\Installer\chrmstp.exe [2022-10-14] (Google LLC -> Google LLC) HKLM\Software\...\Authentication\Credential Providers: [{F3F1B0FA-4775-41d8-8578-436772D93FB4}] -> C:\Program Files\Hewlett-Packard\SimplePass\OmniPassCredProv.dll [2014-03-28] (Softex Inc..) [Fichier non signé] HKLM\Software\...\Authentication\Credential Providers: [{f64945df-4fa9-4068-a2fb-61af319edd33}] -> C:\WINDOWS\system32\rdpcredentialprovider.dll [2022-09-16] (Microsoft Windows -> Microsoft Corporation) HKLM\Software\...\Authentication\Credential Provider Filters: [{F3F1B0FA-4775-41d8-8578-436772D93FB4}] -> C:\Program Files\Hewlett-Packard\SimplePass\OmniPassCredProv.dll [2014-03-28] (Softex Inc..) [Fichier non signé] Startup: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\PdaNet Desktop.lnk [2016-12-28] ShortcutTarget: PdaNet Desktop.lnk -> C:\Program Files (x86)\PdaNet for Android\PdaNetPC.exe (June Fabrics Technology Inc. -> ) Startup: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\QuickLook.lnk [2020-05-16] ShortcutTarget: QuickLook.lnk -> C:\Users\hp\AppData\Local\Programs\QuickLook\QuickLook.exe (pooi.moe) [Fichier non signé] Startup: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Synology Cloud Station Backup.lnk [2021-10-02] ShortcutTarget: Synology Cloud Station Backup.lnk -> C:\Program Files (x86)\Synology\CloudStationBackup\bin\launcher.exe (Synology Inc. -> Synology Inc.) [Fichier non signé] Startup: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Synology Cloud Station Drive.lnk [2018-05-30] ShortcutTarget: Synology Cloud Station Drive.lnk -> C:\Program Files (x86)\Synology\CloudStation\bin\launcher.exe (Synology Inc. -> Synology Inc.) [Fichier non signé] ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {036025B6-CEF5-447F-AFFE-FDE777C3F75A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-09-03] (Google Inc -> Google Inc.) Task: {084CF88C-CA2E-4AD3-81B7-122AEFE678A5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MpCmdRun.exe [1348368 2022-10-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {088E4C1F-DE75-4FEC-B333-22A71226DF85} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK Task: {0B46E2D6-4FE2-4236-9986-7BC16BA303D6} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-canto.85@hotmail.fr => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated) Task: {1D4858FD-3F14-4D6F-BFD3-F8993DCC90B4} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26165176 2022-10-14] (Microsoft Corporation -> Microsoft Corporation) Task: {1D50864F-87E7-41F3-B85A-6FECAE3B98B7} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe /send (Pas de fichier) Task: {26B26B17-80C3-4A52-94A9-DE1069AC15BE} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1552376 2022-09-26] (Adobe Inc. -> Adobe Inc.) Task: {2848019C-CCE6-44A2-B7EB-2FE871496549} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1656320 2022-01-27] (Nvidia Corporation -> NVIDIA Corporation) Task: {2DC4ADD9-8500-408F-B839-7C481CAFE927} - System32\Tasks\USER_ESRV_SVC_WILLAMETTE => "C:\WINDOWS\System32\Wscript.exe" //B //NoLogo "C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\task.vbs" Task: {2E156ADF-F07D-4686-A8E0-4E179EE6AD69} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-09-03] (Google Inc -> Google Inc.) Task: {30D1400B-C812-4C6D-89E0-1CAC60A7F0BD} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [143232 2022-10-14] (Microsoft Corporation -> Microsoft Corporation) Task: {34A9F647-824B-4A65-87AC-1071600C9423} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [647376 2022-01-27] (Nvidia Corporation -> NVIDIA Corporation) Task: {40C11307-7AEC-4F8D-8E3F-2860DC557CD2} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload => {EBF00FCB-0769-4B81-9BEC-6C05514111AA} Task: {475E4E57-96E7-4DF9-B801-2735FC4021D4} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {4BBA976F-29E7-4AB3-BB44-D593743C2486} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MpCmdRun.exe [1348368 2022-10-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {4D19A0BE-F1BE-4088-AFCF-2D7E1878F964} - System32\Tasks\CCleanerSkipUAC - hp => C:\Program Files\CCleaner\CCleaner.exe [32204304 2022-09-12] (Piriform Software Ltd -> Piriform Software Ltd) Task: {53D6C3A5-6D1F-4DB0-A882-F44BA0AFC409} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26165176 2022-10-14] (Microsoft Corporation -> Microsoft Corporation) Task: {5D9280A7-0385-4F6E-9CDD-B6E606699A3D} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1656320 2022-01-27] (Nvidia Corporation -> NVIDIA Corporation) Task: {64F14256-B307-44BA-8F34-E4A4E501A27B} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB" Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task => {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Task: {77087A1E-5116-45EF-BEEB-07AD05FA26C2} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [65448 2022-09-28] (Microsoft Corporation -> Microsoft Corporation) Task: {777BCA60-7E83-4267-942F-2A24EF6199BC} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4666896 2022-09-12] (Piriform Software Ltd -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "6b0cc369-5e69-473f-838d-a87932b0b72d" --version "6.04.10044" --silent Task: {7FBC661F-52F4-45E1-9C5F-F0FC3EE5B0B0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MpCmdRun.exe [1348368 2022-10-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {83F1BB74-72D5-452B-86C2-2833A738D387} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1009872 2021-11-02] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task => {1B1F472E-3221-4826-97DB-2C2324D389AE} Task: {91C9D8D4-0FD5-40C7-972F-1617DDE17AA8} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906752 2022-01-27] (Nvidia Corporation -> NVIDIA Corporation) Task: {97C99238-B4A2-428C-86D5-68AD7F1FDB45} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3476184 2022-07-27] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {9D6A4490-BB52-46E8-8239-D39F4DB2050D} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3339472 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation) Task: {B30971E8-C494-4798-988B-1B2436346A85} - System32\Tasks\GyazoUpdateTaskMachineDaily => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [6785448 2020-03-30] (Nota Inc. -> Nota Inc.) Task: {B5485350-1D8E-40CC-8B42-32DD74A9CDC7} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1656320 2022-01-27] (Nvidia Corporation -> NVIDIA Corporation) Task: {BD4E0475-273D-4CF7-9243-F1D9A9820455} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-12] (Dropbox, Inc -> Dropbox, Inc.) Task: {BE20A665-4127-4BBE-8AAF-A05F39CCF960} - System32\Tasks\GyazoUpdateTaskMachine => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [6785448 2020-03-30] (Nota Inc. -> Nota Inc.) Task: {C088A7AD-DD7E-456E-9980-F32EB1BD161A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe /taskrestart (Pas de fichier) Task: {C595063D-E1AB-4ADD-A9C1-B91D06658FC6} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [157320 2020-10-16] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {C66DCF13-1460-4C4E-8283-DDA502A7C2B2} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-12] (Dropbox, Inc -> Dropbox, Inc.) Task: {CC310361-1FD0-4BD8-86E7-06E3BDA32B2B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MpCmdRun.exe [1348368 2022-10-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {CE2DE968-E342-40D7-9566-427D45E4A886} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371} Task: {D583FB51-FDB6-4046-A9E4-6A75BFB29AC0} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [157320 2020-10-16] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {D761F5B8-F629-490C-99E5-B1C255F87C21} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1656320 2022-01-27] (Nvidia Corporation -> NVIDIA Corporation) Task: {E158A8AA-D9CF-441B-A8B1-B1612AEA7B87} - System32\Tasks\{BBB14064-AD61-429C-A901-BB3EDF716D37} => C:\WINDOWS\system32\pcalua.exe -a "C:\Program Files (x86)\InstallShield Installation Information\{7F28165B-148D-4672-AA21-469D9E6E3CB6}\setup.exe" Task: {E37639C1-3C5C-4F97-AF61-143DA3058CC2} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906752 2022-01-27] (Nvidia Corporation -> NVIDIA Corporation) Task: {EA50BA15-17A4-4917-8E61-9D2E352E1EFF} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [143232 2022-10-14] (Microsoft Corporation -> Microsoft Corporation) Task: {F8E5EA68-F853-4C88-8B11-46D9323149C6} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-09-12] (Piriform Software Ltd -> Piriform) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{1d998e26-64b5-4dff-9e14-4aef075abe11}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{3a71e07f-10f6-4e35-9cfb-c9e9f608b025}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{9272e2bf-6bd5-1513-a95c-605fd4c46776}: [NameServer] 103.86.99.99,103.86.96.96 Tcpip\..\Interfaces\{9bcf9f36-569d-4782-9029-de46d6042965}: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{b5d3f367-1946-408a-b9e9-c3c5d946ef42}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{d116686e-f589-43c9-a5de-00bcdc247e10}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{dfc6f68a-1e64-4cbe-84a2-9f0f8621e894}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{fd514ba2-61fc-4766-8e07-b6f8b9fc96a9}: [DhcpNameServer] 10.0.0.1 Edge: ======= DownloadDir: C:\Users\hp\Downloads Edge Session Restore: HKU\S-1-5-21-2340712917-288545405-3420014623-1001 -> est activé. Edge Extension: (Adblock Plus) -> 10_EyeoGmbHAdblockPlus_d55gg7py3s0m0 => C:\Program Files\WindowsApps\EyeoGmbH.AdblockPlus_0.9.19.0_neutral__d55gg7py3s0m0 [2021-02-22] Edge Extension: (Nom) -> EdgeExtension_JanBiniokTampermonkey_gz80c7jhhn2hw => C:\Program Files\WindowsApps\JanBiniok.Tampermonkey_4.9.5942.0_neutral__gz80c7jhhn2hw [2021-02-22] Edge DefaultProfile: Default Edge Profile: C:\Users\hp\AppData\Local\Microsoft\Edge\User Data\Default [2022-10-15] Edge Notifications: Default -> hxxps://stopovirus.clicforum.fr Edge Session Restore: Default -> est activé. Edge Extension: (Malwarebytes Browser Guard) - C:\Users\hp\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2022-10-12] Edge HKLM-x32\...\Edge\Extension: [ihcjicgdanjaechkgeegckofjjedodee] FireFox: ======== FF DefaultProfile: 3iung9ta.default-1483469415897-1634463816547 FF ProfilePath: C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\3iung9ta.default-1483469415897-1634463816547 [2022-10-15] FF Extension: (AdBlocker Ultimate) - C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\3iung9ta.default-1483469415897-1634463816547\Extensions\adblockultimate@adblockultimate.net.xpi [2022-10-02] FF Extension: (SimpleLogin:Receive & Send emails anonymously) - C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\3iung9ta.default-1483469415897-1634463816547\Extensions\addon@simplelogin.xpi [2022-10-13] FF Extension: (Tampermonkey) - C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\3iung9ta.default-1483469415897-1634463816547\Extensions\firefox@tampermonkey.net.xpi [2022-10-02] FF Extension: (To Google Translate) - C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\3iung9ta.default-1483469415897-1634463816547\Extensions\jid1-93WyvpgvxzGATw@jetpack.xpi [2022-03-05] FF Extension: (Malwarebytes Browser Guard) - C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\3iung9ta.default-1483469415897-1634463816547\Extensions\{242af0bb-db11-4734-b7a0-61cb8a9b20fb}.xpi [2022-10-10] FF Extension: (Startpage Privacy Protection) - C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\3iung9ta.default-1483469415897-1634463816547\Extensions\{5b1a796b-231a-4ad1-84ff-918db0818207}.xpi [2022-10-15] FF ProfilePath: C:\Users\hp\AppData\Roaming\Moonchild Productions\Pale Moon\Profiles\ossp4u1a.default [2022-10-04] FF Extension: (Français (FR) Language Pack) - C:\Users\hp\AppData\Roaming\Moonchild Productions\Pale Moon\Profiles\ossp4u1a.default\Extensions\langpack-fr@palemoon.org.xpi [2017-05-14] [] [non signé] FF Extension: (Pale Moon Locale Switcher) - C:\Users\hp\AppData\Roaming\Moonchild Productions\Pale Moon\Profiles\ossp4u1a.default\Extensions\pm-localeswitch@palemoon.org.xpi [2017-01-03] [] [non signé] FF Extension: (uBlock Origin) - C:\Users\hp\AppData\Roaming\Moonchild Productions\Pale Moon\Profiles\ossp4u1a.default\Extensions\uBlock0@raymondhill.net.xpi [2017-05-15] [] FF Extension: (NoScript) - C:\Users\hp\AppData\Roaming\Moonchild Productions\Pale Moon\Profiles\ossp4u1a.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2017-01-04] [] FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt FF Extension: (Logitech SetPoint) - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2017-04-08] [] [non signé] FF Plugin: @java.com/DTPlugin,version=11.251.2 -> C:\Program Files\Java\jre1.8.0_251\bin\dtplugin\npDeployJava1.dll [2020-04-15] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.251.2 -> C:\Program Files\Java\jre1.8.0_251\bin\plugin2\npjp2.dll [2020-04-15] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-07-08] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.12 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.16 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2019-01-22] (Adobe Systems Incorporated -> Adobe Systems) FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-05-13] (Foxit Corporation -> ) FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-05-13] (Foxit Corporation -> ) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [Pas de fichier] FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [Pas de fichier] FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-07-08] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @videolan.org/vlc,version=3.0.11 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2022-03-24] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.12 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2022-03-24] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.14 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2022-03-24] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.16 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2022-03-24] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.17.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2022-03-24] (VideoLAN -> VideoLAN) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [Pas de fichier] FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-03-06] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2019-01-22] (Adobe Systems Incorporated -> Adobe Systems) FF Plugin-x32: ZEON/PDF,version=2.0 -> C:\Program Files (x86)\Nuance\PDF Professional 7\bin\nppdf.dll [2011-07-15] (Zeon Corporation -> Zeon Corporation) FF Plugin HKU\S-1-5-21-2340712917-288545405-3420014623-1001: @zoom.us/ZoomVideoPlugin -> C:\Users\hp\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2020-04-08] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) Chrome: ======= CHR HKU\S-1-5-21-2340712917-288545405-3420014623-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\hp\AppData\Local\Google\Drive\user_default\apdfllckaahabafndbhieahigkjlhalf_live.crx [2019-10-27] CHR HKU\S-1-5-21-2340712917-288545405-3420014623-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] Brave: ======= BRA Profile: C:\Users\hp\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2022-10-15] BRA DefaultSearchKeyword: Default -> :g BRA Extension: (Google Traduction) - C:\Users\hp\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2022-03-10] BRA Extension: (Tampermonkey) - C:\Users\hp\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2022-06-30] BRA Extension: (Grepolis Report Converter Revolution Tools) - C:\Users\hp\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\eediamimojgbnjfaalcnlonenfdcogop [2022-09-23] BRA Extension: (GoFullPage - Full Page Screen Capture) - C:\Users\hp\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\fdpohaocaechififmbbbbbknoalclacl [2022-06-01] BRA Extension: (GrepolisToolkit, le script !) - C:\Users\hp\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\fehekolnlpmcpflkgchknkboeanmhicc [2022-08-29] BRA Extension: (Tampermonkey BETA) - C:\Users\hp\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\gcalenpjmijncebpfijmoaglllgpjagf [2022-09-20] BRA Extension: (Lanceur d'applications pour Drive (par Google)) - C:\Users\hp\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2022-10-15] BRA Extension: (Page Captures d'écran Web - Fireshot) - C:\Users\hp\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\mcbpblocgmgfnpjjppndjkmgjaogfceg [2022-06-14] BRA Extension: (Save to Pocket) - C:\Users\hp\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\niloccemoadcdkdjlinkgdfekeahmflj [2022-02-12] BRA Extension: (Brave Local Data Files Updater) - C:\Users\hp\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2022-10-15] BRA Extension: (Brave NTP background images) - C:\Users\hp\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2022-08-19] BRA Extension: (Brave Ads Resources) - C:\Users\hp\AppData\Local\BraveSoftware\Brave-Browser\User Data\bgifagoclclhhoflocdefiklgodpihog [2022-06-11] BRA Extension: (Wallet Data Files Updater) - C:\Users\hp\AppData\Local\BraveSoftware\Brave-Browser\User Data\BraveWallet [2022-09-17] BRA Extension: (Brave Ad Block Updater (Default)) - C:\Users\hp\AppData\Local\BraveSoftware\Brave-Browser\User Data\cffkpbalmllkdoenhmdmpbkajipdjfam [2022-10-15] BRA Extension: (Brave Tor Client Updater (Windows)) - C:\Users\hp\AppData\Local\BraveSoftware\Brave-Browser\User Data\cpoalefficncklhjfpglfiplenlpccdb [2022-08-20] BRA Extension: (Brave Ad Block Updater (AdGuard Français)) - C:\Users\hp\AppData\Local\BraveSoftware\Brave-Browser\User Data\emaecjinaegfkoklcdafkiocjhoeilao [2022-10-15] BRA Extension: (Brave Ads Resources) - C:\Users\hp\AppData\Local\BraveSoftware\Brave-Browser\User Data\hbejpnagkgeeohiojniljejpdpojmfdp [2021-05-24] BRA Extension: (Brave Ads Resources) - C:\Users\hp\AppData\Local\BraveSoftware\Brave-Browser\User Data\ijgkfgmfiinppefbonemjidmkhgbonei [2022-03-29] BRA Extension: (Brave SpeedReader Updater) - C:\Users\hp\AppData\Local\BraveSoftware\Brave-Browser\User Data\jicbkmdloagakknpihibphagfckhjdih [2022-03-11] BRA Extension: (Brave Ad Block Updater (Adguard Spanish/Portuguese)) - C:\Users\hp\AppData\Local\BraveSoftware\Brave-Browser\User Data\jpolmkeojnkicccihhepfbkhcbicimpa [2022-10-15] BRA Extension: (Brave NTP sponsored images) - C:\Users\hp\AppData\Local\BraveSoftware\Brave-Browser\User Data\lcenblphbmngnohghkhpojmpflebkcpd [2022-10-15] BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\hp\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2022-10-15] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2022-09-26] (Adobe Inc. -> Adobe Inc.) S2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [818128 2019-01-22] (Adobe Systems Incorporated -> Adobe Inc.) S2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3863256 2022-07-27] (Adobe Inc. -> Adobe Systems, Incorporated) S2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3701464 2022-07-27] (Adobe Inc. -> Adobe Systems, Incorporated) S2 Becca Service; C:\Program Files (x86)\Rene.E Laboratory\Becca\x64\bcservice.exe [63984 2016-03-30] (Rene.E Laboratory Co., Ltd. -> Rene.E Laboratory) S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [157320 2020-10-16] (Brave Software, Inc. -> BraveSoftware Inc.) S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [157320 2020-10-16] (Brave Software, Inc. -> BraveSoftware Inc.) S3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [314368 2018-01-18] (Brother Industries, Ltd.) [Fichier non signé] S2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12477344 2022-10-14] (Microsoft Corporation -> Microsoft Corporation) S2 Cloud Station Backup VSS Service x64; C:\Program Files (x86)\Synology\CloudStationBackup\bin\vss-service-x64.exe [287256 2018-05-18] (Synology Inc. -> ) [Fichier non signé] S2 Cloud Station Drive VSS Service x64; C:\Program Files (x86)\Synology\CloudStation\bin\vss-service-x64.exe [287256 2018-05-18] (Synology Inc. -> ) [Fichier non signé] S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-12] (Dropbox, Inc -> Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-12] (Dropbox, Inc -> Dropbox, Inc.) S2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [46824 2022-10-10] (Dropbox, Inc -> Dropbox, Inc.) S2 ESRV_SVC_WILLAMETTE; C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe [414360 2016-02-05] (Intel(R) Software Development Products -> ) S3 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [73088 2019-02-26] (Mixbyte Inc -> Freemake) S2 FreemakeVideoCapture; C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe [15744 2019-02-26] (Mixbyte Inc -> Ellora Assets Corp.) S2 GenieTimelineService; C:\Program Files\NETGEAR\ReadySHARE Vault\GenieTimelineService.exe [671744 2016-12-18] (Genie9) [Fichier non signé] S2 GUBootService; C:\Program Files (x86)\Common Files\Glarysoft\StartupManager\1.0\GUBootService.exe [883472 2022-09-05] (Glarysoft LTD -> Glarysoft Ltd) S3 GUPMService; C:\Program Files (x86)\Glary Utilities 5\GUPMService.exe [74000 2022-09-05] (Glarysoft LTD -> Glarysoft Ltd) S2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [236864 2022-06-24] (Huawei Technologies Co., Ltd. -> ) [Fichier non signé] S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [73728 2004-10-22] (Macrovision Corporation) [Fichier non signé] R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [8765464 2022-10-05] (Malwarebytes Inc. -> Malwarebytes) S2 MEmuSVC; D:\Program Files\Microvirt\MEmu\MemuService.exe [85304 2019-07-02] (Shanghai Microvirt Software Technology Co., Ltd. -> ) S2 myCANAL Server; C:\ProgramData\myCANAL\nssm.exe [294912 2019-06-26] () [Fichier non signé] S3 nordsec-threatprotection-service; C:\Program Files\NordVPN\NordSec ThreatProtection\nordsec-threatprotection-service.exe [310136 2021-06-09] (nordvpn s.a. -> TEFINCOM S.A.) S3 NordUpdaterService; C:\Program Files\NordUpdater\NordUpdateService.exe [300408 2022-08-03] (nordvpn s.a. -> TEFINCOM S.A.) S2 nordvpn-service; C:\Program Files\NordVPN\nordvpn-service.exe [254328 2022-08-03] (nordvpn s.a. -> TEFINCOM S.A.) S2 omniserv; C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe [88064 2014-03-28] (Softex Inc.) [Fichier non signé] S2 PlexUpdateService; C:\Program Files (x86)\Plex\Plex Media Server\Plex Update Service.exe [588376 2022-08-30] (Plex, Inc. -> Plex, Inc.) S3 ProtonVPN Service; C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPNService.exe [101184 2020-06-04] (ProtonVPN AG -> ) S3 ProtonVPN Update Service; C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPN.UpdateService.exe [61760 2020-06-04] (ProtonVPN AG -> ) S2 Realtek8723AU; C:\Program Files (x86)\NETGEAR\A6100\RtlService.exe [45784 2013-07-02] (NETGEAR -> Realtek Semiconductor Corp.) S2 SystemUsageReportSvc_WILLAMETTE; C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe [115864 2016-02-05] (Intel(R) Software Development Products -> ) S2 Unchecky; C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe [297240 2018-04-08] (Reason Software Company Inc. -> Reason Software Company Inc.) S2 USBAppControl; C:\Program Files (x86)\Brother\iPrint&Scan\USBAppControl.exe [12288 2020-08-04] (Microsoft) [Fichier non signé] S2 UsbClientService; C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe [254656 2022-04-11] (Synology Inc. -> ) S3 USER_ESRV_SVC_WILLAMETTE; C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe [414360 2016-02-05] (Intel(R) Software Development Products -> ) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\NisSrv.exe [3170576 2022-10-14] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MsMpEng.exe [133584 2022-10-14] (Microsoft Windows Publisher -> Microsoft Corporation) S2 WorkflowAppControl; C:\Program Files (x86)\Brother\iPrint&Scan\WorkflowAppControl.exe [20480 2020-08-04] (Microsoft) [Fichier non signé] S3 WsDrvInst; C:\Program Files (x86)\Wondershare\MobileTrans\DriverInstall.exe [115856 2016-10-18] (Wondershare software CO., LIMITED -> Wondershare) S3 BraveElevationService; "C:\Program Files\BraveSoftware\Brave-Browser\Application\106.1.44.112\elevation_service.exe" [X] S3 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_ee20464bb4ac57f4\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_ee20464bb4ac57f4\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 A6100; C:\WINDOWS\System32\drivers\A6100.sys [7957584 2020-10-13] (NETGEAR TAIWAN CO., LTD -> Realtek Semiconductor Corporation) S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [287744 2022-01-26] (Microsoft Corporation) [Fichier non signé] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [154112 2021-10-13] (Microsoft Corporation) [Fichier non signé] R3 busenum; C:\WINDOWS\System32\drivers\busenum.sys [57824 2012-08-03] (Synology Inc. -> Windows (R) Win 7 DDK provider) S3 clwvd9; C:\WINDOWS\System32\drivers\clwvd9.sys [60984 2019-09-08] (CyberLink Corp. -> CyberLink Corporation) S3 CSRBC; C:\WINDOWS\System32\Drivers\rider64.sys [38400 2015-09-07] (Microsoft Windows Hardware Compatibility Publisher -> CSR plc.) S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2022-06-24] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) S3 gdrv; C:\WINDOWS\gdrv.sys [26192 2016-10-07] (Giga-Byte Technology -> Windows (R) Server 2003 DDK provider) R1 googledrivefs3758; C:\WINDOWS\System32\DRIVERS\googledrivefs3758.sys [384584 2022-03-01] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.) S1 GUBootStartup; C:\WINDOWS\System32\drivers\GUBootStartup.sys [45056 2022-09-24] (Microsoft Windows Hardware Compatibility Publisher -> Glarysoft Ltd) U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2022-06-24] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) S2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [223176 2022-10-15] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2022-06-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) S3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes Corporation -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239544 2022-10-15] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [65408 2016-03-10] (Malwarebytes Corporation -> Malwarebytes Corporation) S1 MEmuDrv; C:\WINDOWS\system32\DRIVERS\MEmuDrv.sys [319192 2019-09-21] (Shanghai Microvirt Software Technology Co., Ltd. -> Maiwei Corporation) S3 mshield; C:\WINDOWS\System32\DRIVERS\mshield.sys [43112 2022-08-24] (nordvpn s.a. -> Nordvpn S.A.) S2 NDivert; C:\Program Files\NordVPN\7.1.1.0\Drivers\NDivert.sys [131472 2022-06-28] (nordvpn s.a. -> Nordvpn S.A.) S3 Netaapl; C:\WINDOWS\System32\drivers\netaapl64.sys [32352 2017-11-28] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.) R1 nordlwf; C:\WINDOWS\system32\DRIVERS\nordlwf.sys [44928 2021-06-09] (nordvpn s.a. -> TEFINCOM S.A.) S3 NPF; C:\WINDOWS\System32\drivers\NPF.sys [35344 2011-02-11] (CACE Technologies, Inc. -> CACE Technologies, Inc.) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [48552 2022-01-06] (Microsoft Windows Hardware Compatibility Publisher -> NVIDIA Corporation) S3 ProtonVPNSplitTunnel; C:\Program Files (x86)\Proton Technologies\ProtonVPN\x64\Win10\ProtonVPN.SplitTunnelDriver.sys [31584 2020-06-03] (Microsoft Windows Hardware Compatibility Publisher -> Proton Technologies AG) S3 ptun0901; C:\WINDOWS\System32\drivers\ptun0901.sys [27136 2016-06-15] (OpenVPN Technologies, Inc. -> The OpenVPN Project) S2 speedfan; C:\WINDOWS\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software) S3 tapexpressvpn; C:\WINDOWS\System32\drivers\tapexpressvpn.sys [44304 2019-08-21] (ExprsVPN LLC -> The OpenVPN Project) R3 tapnordvpn; C:\WINDOWS\System32\drivers\tapnordvpn.sys [49744 2021-06-13] (nordvpn s.a. -> The OpenVPN Project) R3 tapprotonvpn; C:\WINDOWS\System32\drivers\tapprotonvpn.sys [44976 2018-06-01] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49616 2022-10-14] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [455968 2022-10-14] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [95520 2022-10-14] (Microsoft Windows -> Microsoft Corporation) S3 wintun; C:\WINDOWS\system32\DRIVERS\wintun.sys [29592 2022-03-11] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-10-15 19:40 - 2022-10-15 19:42 - 000512020 _____ C:\WINDOWS\Minidump\101522-38843-01.dmp 2022-10-15 19:24 - 2022-10-15 19:40 - 000223176 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys 2022-10-15 17:16 - 2022-10-15 17:25 - 000011779 _____ C:\Users\hp\Desktop\Fixlog.txt 2022-10-15 17:14 - 2022-10-15 17:14 - 000000000 ____D C:\Users\hp\Desktop\FRST-OlderVersion 2022-10-15 10:57 - 2022-10-15 10:57 - 000004012 _____ C:\Users\hp\Downloads\CA20221015_105742.xlsx 2022-10-15 10:57 - 2022-10-15 10:57 - 000004011 _____ C:\Users\hp\Downloads\CA20221015_105733.xlsx 2022-10-15 10:12 - 2022-10-15 10:12 - 000014441 _____ C:\Users\hp\Documents\15_trajet_non_facture.xlsx 2022-10-15 09:53 - 2022-10-15 09:53 - 000001138 _____ C:\Users\hp\Downloads\15_trajet_non_facture.csv 2022-10-14 23:40 - 2022-10-14 23:40 - 000001030 _____ C:\Users\hp\Documents\14_trajet_non_facture.excel 2022-10-14 23:38 - 2022-10-14 23:38 - 000001138 _____ C:\Users\hp\Downloads\14_trajet_non_facture.csv 2022-10-14 23:35 - 2022-10-14 23:35 - 000301802 _____ C:\Users\hp\Downloads\facture_202208.pdf 2022-10-14 23:10 - 2022-08-24 10:18 - 000043112 _____ (Nordvpn S.A.) C:\WINDOWS\system32\Drivers\mshield.sys 2022-10-14 23:05 - 2022-10-14 23:05 - 000000000 ____D C:\ProgramData\NordUpdater 2022-10-14 20:56 - 2022-10-14 21:07 - 000089859 _____ C:\Users\hp\Desktop\Addition.txt 2022-10-14 20:48 - 2022-10-15 20:06 - 000041884 _____ C:\Users\hp\Desktop\FRST.txt 2022-10-14 19:06 - 2022-10-15 20:03 - 000466788 _____ C:\Users\hp\Desktop\ZHPDiag.txt 2022-10-14 18:51 - 2022-10-15 20:05 - 000000000 ____D C:\FRST 2022-10-14 18:30 - 2022-10-15 17:14 - 002373120 _____ (Farbar) C:\Users\hp\Desktop\FRST64.exe 2022-10-14 18:29 - 2022-10-15 19:45 - 000000869 _____ C:\Users\hp\Desktop\ZHPSuite.lnk 2022-10-14 18:28 - 2022-10-15 09:13 - 003509960 _____ (Nicolas Coolman) C:\Users\hp\Desktop\ZHPSuite.exe 2022-10-14 18:28 - 2022-10-14 18:28 - 000000000 ____D C:\Users\hp\AppData\Local\ZHP 2022-10-13 07:25 - 2022-10-13 07:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2022-10-12 20:22 - 2022-10-12 20:22 - 000012253 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2022-10-12 20:21 - 2022-10-12 20:21 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe 2022-10-12 19:53 - 2022-10-12 19:53 - 000468300 _____ C:\Users\hp\Downloads\document.pdf 2022-10-12 19:52 - 2022-10-12 19:53 - 000468300 _____ C:\Users\hp\Downloads\GALVA.pdf 2022-10-12 19:47 - 2022-10-12 19:47 - 000000000 ___HD C:\$WinREAgent 2022-10-12 04:57 - 2022-10-12 04:57 - 000004431 _____ C:\Users\hp\Desktop\RapportCHK_12-10-2022.txt 2022-10-12 04:56 - 2022-10-12 04:56 - 000004433 _____ C:\Users\hp\Downloads\RapportCHK_12-10-2022.txt 2022-10-12 04:55 - 2022-10-12 04:55 - 000290111 _____ C:\Users\hp\Desktop\Report_CHKDSK.exe 2022-10-10 22:34 - 2022-10-10 22:34 - 002127024 _____ (CPUID, Inc. ) C:\Users\hp\Downloads\cpu-z_2.02-en.exe 2022-10-10 21:32 - 2022-10-10 21:32 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-stable.sys 2022-10-10 21:32 - 2022-10-10 21:32 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-dev.sys 2022-10-10 21:32 - 2022-10-10 21:32 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-canary.sys 2022-10-10 21:32 - 2022-10-10 21:32 - 000046824 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe 2022-10-10 21:20 - 2022-10-10 21:21 - 000000000 ____D C:\Users\hp\Downloads\CrystalDiskInfo8_17_8 2022-10-10 21:20 - 2022-10-10 21:20 - 006218328 _____ C:\Users\hp\Downloads\CrystalDiskInfo8_17_8.zip 2022-10-10 18:54 - 2022-10-15 17:32 - 000000000 ____D C:\Users\hp\AppData\Local\LogiBolt 2022-10-10 18:54 - 2022-10-10 18:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi 2022-10-10 18:54 - 2022-10-10 18:54 - 000000000 ____D C:\Program Files\Logi 2022-10-10 18:08 - 2022-10-12 00:25 - 000000000 ____D C:\Program Files\Mozilla Firefox 2022-10-10 18:06 - 2022-10-10 18:11 - 000001709 _____ C:\Users\hp\Desktop\kprm-20221010180646.txt 2022-10-04 21:52 - 2022-10-15 19:40 - 708830589 _____ C:\WINDOWS\MEMORY.DMP 2022-10-04 21:52 - 2022-10-04 21:53 - 000551492 _____ C:\WINDOWS\Minidump\100422-39765-01.dmp 2022-10-04 21:41 - 2022-10-15 19:40 - 001054980 _____ C:\WINDOWS\ntbtlog.txt 2022-10-03 22:10 - 2022-10-03 23:13 - 000007621 _____ C:\Users\hp\Downloads\OCCT.config.json 2022-10-03 22:08 - 2022-10-03 22:08 - 086434992 _____ (OCCT - Ocbase - Adrien Mercier) C:\Users\hp\Downloads\OCCT.exe 2022-10-03 22:00 - 2022-10-03 22:00 - 009369041 _____ C:\Users\hp\Downloads\memtest86-usb.zip 2022-10-03 22:00 - 2022-10-03 22:00 - 000000000 ____D C:\Users\hp\Downloads\memtest86-usb 2022-10-03 20:13 - 2022-10-03 20:13 - 000279560 _____ C:\Users\hp\Downloads\CrucialFRScan.exe 2022-10-02 11:10 - 2022-10-15 19:11 - 000000760 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job 2022-10-02 11:10 - 2022-10-15 17:50 - 000003416 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting 2022-09-29 19:52 - 2022-09-29 19:52 - 000000847 _____ C:\WINDOWS\system32\ServiceRunSettings.xml 2022-09-26 10:31 - 2022-09-26 19:20 - 000000000 ____D C:\Users\hp\Documents\Cagette 2022-09-24 22:04 - 2022-09-24 22:04 - 005923256 _____ (Gougelet Pierre-e ) C:\Users\hp\Downloads\XnView_v2.51.1.exe 2022-09-24 22:03 - 2022-09-24 22:03 - 131228816 _____ (NVIDIA Corporation) C:\Users\hp\Downloads\NVIDIA_GeForce_Experience_v3.25.0.84.exe 2022-09-24 22:03 - 2022-09-24 22:03 - 042075856 _____ C:\Users\hp\Downloads\VLC_Media_Player_(32bit)_v3.0.17.4.exe 2022-09-24 22:03 - 2022-09-24 22:03 - 002127024 _____ (CPUID, Inc. ) C:\Users\hp\Downloads\CPU_Z_v2.02.exe 2022-09-24 22:03 - 2022-09-24 22:03 - 001575742 _____ (Igor Pavlov) C:\Users\hp\Downloads\7_Zip_(64bit)_v22.01.exe 2022-09-24 16:45 - 2022-09-24 16:45 - 000000000 ____D C:\ProgramData\Glarysoft 2022-09-24 16:44 - 2022-09-26 00:15 - 000000000 ____D C:\Program Files (x86)\Glary Utilities 5 2022-09-24 16:44 - 2022-09-24 16:44 - 000045056 _____ (Glarysoft Ltd) C:\WINDOWS\system32\Drivers\GUBootStartup.sys 2022-09-24 16:44 - 2022-09-24 16:44 - 000001128 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5.lnk 2022-09-24 16:44 - 2022-09-24 16:44 - 000001116 _____ C:\Users\Public\Desktop\Glary Utilities 5.lnk 2022-09-24 16:44 - 2022-09-24 16:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5 2022-09-24 16:43 - 2022-09-24 16:43 - 020529064 _____ (Glarysoft Ltd) C:\Users\hp\Downloads\gu5setup.exe 2022-09-24 15:39 - 2022-08-23 23:26 - 001905912 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2022-09-24 15:39 - 2022-08-23 23:26 - 001905912 _____ C:\WINDOWS\system32\vulkaninfo.exe 2022-09-24 15:39 - 2022-08-23 23:26 - 001478408 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2022-09-24 15:39 - 2022-08-23 23:26 - 001478408 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2022-09-24 15:39 - 2022-08-23 23:26 - 001145592 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2022-09-24 15:39 - 2022-08-23 23:26 - 001145592 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2022-09-24 15:39 - 2022-08-23 23:25 - 001471984 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2022-09-24 15:39 - 2022-08-23 23:25 - 001432312 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2022-09-24 15:39 - 2022-08-23 23:25 - 001432312 _____ C:\WINDOWS\system32\vulkan-1.dll 2022-09-24 15:39 - 2022-08-23 23:25 - 001213424 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2022-09-24 15:39 - 2022-08-23 23:22 - 001536512 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2022-09-24 15:39 - 2022-08-23 23:22 - 001182704 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2022-09-24 15:39 - 2022-08-23 23:22 - 000865784 _____ C:\WINDOWS\system32\nvofapi64.dll 2022-09-24 15:39 - 2022-08-23 23:22 - 000771584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll 2022-09-24 15:39 - 2022-08-23 23:22 - 000714752 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe 2022-09-24 15:39 - 2022-08-23 23:22 - 000687616 _____ C:\WINDOWS\SysWOW64\nvofapi.dll 2022-09-24 15:39 - 2022-08-23 23:22 - 000052208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhdap64.dll 2022-09-24 15:39 - 2022-08-23 23:21 - 010269696 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2022-09-24 15:39 - 2022-08-23 23:21 - 008803840 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2022-09-24 15:39 - 2022-08-23 23:21 - 005362688 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2022-09-24 15:39 - 2022-08-23 23:21 - 003066864 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2022-09-24 15:39 - 2022-08-23 23:21 - 002127856 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2022-09-24 15:39 - 2022-08-23 23:21 - 001607664 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2022-09-24 15:39 - 2022-08-23 23:21 - 001059320 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2022-09-24 15:39 - 2022-08-23 23:21 - 000845312 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2022-09-24 15:39 - 2022-08-23 23:21 - 000456192 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe 2022-09-24 15:39 - 2022-08-23 23:20 - 005735936 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2022-09-24 15:39 - 2022-08-23 23:20 - 000852984 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe 2022-09-24 15:39 - 2022-08-23 23:19 - 006367424 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2022-09-24 15:39 - 2022-08-23 22:57 - 000093241 _____ C:\WINDOWS\system32\nvinfo.pb 2022-09-22 22:02 - 2022-09-22 22:02 - 095334400 _____ C:\Users\hp\Downloads\PlexMediaServer-1.29.0.6219-b1b4d4871-armv7hf_DSM7.spk 2022-09-18 19:11 - 2022-09-18 19:18 - 000000000 ____D C:\Users\hp\Downloads\PlexMediaServer-1.29.0.6219-b1b4d4871-armv7hf_DSM7 2022-09-17 23:59 - 2022-10-15 16:56 - 000000000 ____D C:\Users\hp\AppData\Local\Plex Media Server 2022-09-17 23:51 - 2022-09-17 23:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Plex Media Server 2022-09-17 23:51 - 2022-09-17 23:51 - 000000000 ____D C:\Program Files (x86)\Plex 2022-09-17 13:51 - 2022-09-17 13:51 - 000216080 _____ C:\Users\hp\Downloads\334181_14227679_14227679.pdf 2022-09-17 13:51 - 2022-09-17 13:51 - 000216076 _____ C:\Users\hp\Downloads\334181_14227680_14227680.pdf 2022-09-17 10:23 - 2022-09-17 10:23 - 284377766 _____ C:\Users\hp\Downloads\DSM_DS115j_42962 (1).pat 2022-09-16 20:58 - 2022-09-16 20:58 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll 2022-09-16 20:58 - 2022-09-16 20:58 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2022-09-16 20:57 - 2022-09-16 20:57 - 002260480 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll 2022-09-16 20:57 - 2022-09-16 20:57 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2022-09-16 20:56 - 2022-09-16 20:56 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-10-15 20:04 - 2020-05-02 13:36 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2022-10-15 20:03 - 2022-06-11 10:19 - 000571540 _____ C:\Users\hp\Desktop\ZHPDiag.html 2022-10-15 20:03 - 2016-03-19 13:21 - 000000000 ____D C:\Users\hp\AppData\Roaming\ZHP 2022-10-15 19:44 - 2022-02-09 12:01 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2022-10-15 19:43 - 2021-03-29 23:27 - 000000000 ____D C:\WINDOWS\Minidump 2022-10-15 19:43 - 2016-11-16 21:13 - 000000000 ____D C:\Users\hp\AppData\LocalLow\Mozilla 2022-10-15 19:41 - 2020-04-29 19:48 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job 2022-10-15 19:40 - 2022-06-12 15:26 - 000239544 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2022-10-15 19:40 - 2020-05-02 13:35 - 000008192 ___SH C:\DumpStack.log.tmp 2022-10-15 19:35 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2022-10-15 19:22 - 2020-05-02 14:23 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2022-10-15 19:22 - 2016-01-22 16:02 - 000000000 ____D C:\Program Files (x86)\Google 2022-10-15 19:20 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-10-15 19:19 - 2017-07-16 10:00 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2022-10-15 19:19 - 2016-10-07 17:46 - 000000000 __SHD C:\Users\hp\IntelGraphicsProfiles 2022-10-15 19:10 - 2016-09-29 12:56 - 000000000 ____D C:\ProgramData\NVIDIA 2022-10-15 17:50 - 2021-02-04 00:32 - 000000000 ____D C:\Program Files\CCleaner 2022-10-15 17:49 - 2019-10-03 09:29 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData 2022-10-15 17:33 - 2020-05-02 13:50 - 001923838 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2022-10-15 17:33 - 2019-12-07 16:49 - 000831776 _____ C:\WINDOWS\system32\perfh00C.dat 2022-10-15 17:33 - 2019-12-07 16:49 - 000167542 _____ C:\WINDOWS\system32\perfc00C.dat 2022-10-15 17:33 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF 2022-10-15 16:52 - 2022-03-03 19:52 - 000000000 ____D C:\Program Files\NordUpdater 2022-10-15 12:35 - 2017-02-18 09:56 - 000000000 ____D C:\Users\hp\AppData\Local\CrashDumps 2022-10-15 11:32 - 2017-11-05 14:10 - 000000000 ____D C:\Users\hp\AppData\Local\Packages 2022-10-14 23:12 - 2022-01-27 08:46 - 000000000 ____D C:\ProgramData\NordVPN 2022-10-14 23:11 - 2022-01-27 08:47 - 000000000 ____D C:\Users\hp\AppData\Local\NordVPN 2022-10-14 23:10 - 2022-01-27 08:47 - 000001759 _____ C:\Users\hp\Desktop\NordVPN.lnk 2022-10-14 23:10 - 2022-01-27 08:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NordSec 2022-10-14 23:10 - 2022-01-27 08:46 - 000000000 ____D C:\Program Files\NordVPN 2022-10-14 21:22 - 2020-02-04 21:34 - 000000000 ____D C:\Program Files\Microsoft Office 2022-10-14 18:20 - 2022-01-08 21:55 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2340712917-288545405-3420014623-1001 2022-10-14 18:20 - 2020-05-02 14:23 - 000003354 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2340712917-288545405-3420014623-1001 2022-10-14 18:20 - 2020-05-02 12:30 - 000002452 _____ C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2022-10-14 18:19 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2022-10-14 18:19 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2022-10-14 18:17 - 2018-02-28 23:11 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2022-10-14 18:16 - 2020-10-16 18:38 - 000002329 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk 2022-10-14 18:16 - 2020-10-16 18:38 - 000002288 _____ C:\Users\Public\Desktop\Brave.lnk 2022-10-13 07:28 - 2019-10-11 22:47 - 000000000 ____D C:\Program Files (x86)\Dropbox 2022-10-12 23:08 - 2020-05-02 13:36 - 000710528 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2022-10-12 23:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2022-10-12 23:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources 2022-10-12 23:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2022-10-12 23:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2022-10-12 23:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2022-10-12 22:56 - 2021-12-22 00:51 - 000000000 ____D C:\Users\hp\Documents\Force Ouvriére 2022-10-12 20:32 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2022-10-12 20:21 - 2020-05-02 13:42 - 003015168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2022-10-12 19:10 - 2016-01-14 00:15 - 000000000 ____D C:\WINDOWS\system32\MRT 2022-10-12 07:49 - 2016-01-14 00:15 - 147398024 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2022-10-12 05:25 - 2020-09-19 22:27 - 000002409 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-10-12 05:25 - 2020-09-19 22:27 - 000002247 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2022-10-12 00:25 - 2021-02-19 12:55 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2022-10-11 18:46 - 2021-09-20 22:44 - 000002024 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk 2022-10-11 18:46 - 2021-09-20 22:44 - 000001866 _____ C:\Users\Default\Desktop\Google Slides.lnk 2022-10-11 18:46 - 2021-09-20 22:44 - 000001866 _____ C:\Users\Default\Desktop\Google Sheets.lnk 2022-10-11 18:46 - 2021-09-20 22:44 - 000001854 _____ C:\Users\Default\Desktop\Google Docs.lnk 2022-10-11 18:42 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2022-10-10 22:36 - 2020-04-26 18:46 - 000000881 _____ C:\Users\Public\Desktop\CPUID CPU-Z.lnk 2022-10-10 18:54 - 2016-01-16 01:02 - 000000000 ____D C:\ProgramData\Logishrd 2022-10-10 18:50 - 2016-01-16 01:02 - 000000000 ____D C:\Users\hp\AppData\Roaming\Logishrd 2022-10-10 18:49 - 2021-01-22 00:30 - 000000000 ____D C:\Users\hp\AppData\Local\Deployment 2022-10-10 18:49 - 2016-08-03 10:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech 2022-10-10 18:47 - 2016-08-03 10:22 - 000000000 ____D C:\Program Files\Logitech 2022-10-10 18:27 - 2017-07-16 10:01 - 000018960 _____ (Logitech, Inc.) C:\WINDOWS\system32\Drivers\LNonPnP.sys 2022-10-10 18:20 - 2021-10-17 12:04 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2022-10-10 18:19 - 2021-02-22 18:57 - 000001012 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2022-10-10 18:06 - 2019-11-01 21:35 - 000000000 ____D C:\KPRM 2022-10-10 18:00 - 2020-09-19 22:26 - 000003690 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-10-10 18:00 - 2020-09-19 22:26 - 000003566 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2022-10-06 18:00 - 2018-05-07 16:54 - 000000000 ____D C:\Users\hp\AppData\Local\NVIDIA Corporation 2022-10-05 19:29 - 2016-02-17 20:02 - 000000000 ____D C:\Users\hp\AppData\LocalLow\Temp 2022-10-04 21:50 - 2020-05-02 10:13 - 000000000 ___DC C:\WINDOWS\Panther 2022-10-02 21:51 - 2020-05-02 14:23 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2022-10-02 12:16 - 2020-10-22 10:47 - 000000000 ____D C:\Users\hp\Documents\Vin Domaine et Villages 2022-10-02 11:10 - 2021-02-04 00:33 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2022-09-24 22:12 - 2019-10-11 22:47 - 000001188 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job 2022-09-24 22:04 - 2019-11-03 18:40 - 000001106 _____ C:\Users\Public\Desktop\VLC media player.lnk 2022-09-24 21:56 - 2021-01-09 23:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UnHackMe 2022-09-24 21:56 - 2020-11-22 01:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\File Magic 2022-09-24 21:56 - 2019-11-03 18:41 - 000000000 ____D C:\Users\hp\AppData\Roaming\vlc 2022-09-24 21:56 - 2014-11-21 03:58 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2022-09-24 21:56 - 2014-11-21 03:45 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support 2022-09-24 21:51 - 2020-10-16 18:36 - 000003376 _____ C:\WINDOWS\system32\Tasks\BraveSoftwareUpdateTaskMachineCore 2022-09-24 21:51 - 2020-05-02 14:23 - 000003542 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineCore 2022-09-24 15:42 - 2017-07-16 10:00 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2022-09-21 19:09 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\NDF 2022-09-20 19:25 - 2022-05-22 21:06 - 000000000 ____D C:\Users\hp\Documents\Comptes rendus CSE 2022-09-20 15:33 - 2019-11-05 21:23 - 000013505 _____ C:\WINDOWS\BRRBCOM.INI 2022-09-17 23:51 - 2014-04-02 16:46 - 000000000 ____D C:\ProgramData\Package Cache 2022-09-16 22:12 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2022-09-16 22:12 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2022-09-16 22:12 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning 2022-09-16 22:12 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2022-09-16 21:08 - 2019-12-07 11:15 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll 2022-09-16 21:08 - 2019-12-07 11:14 - 000232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll ==================== Fichiers à la racine de certains dossiers ======== 2017-10-16 09:53 - 2019-08-21 16:58 - 000000301 _____ () C:\ProgramData\fontcacheev1.dat 2016-07-03 16:50 - 2016-12-16 18:54 - 002632192 _____ () C:\Users\hp\ZHPCleaner.exe 2016-06-21 20:49 - 2016-06-21 20:50 - 002219008 _____ () C:\Users\hp\ZHPDiag3.exe 2018-09-29 09:57 - 2018-09-29 09:57 - 000000000 _____ () C:\Users\hp\AppData\Local\oobelibMkey.log 2016-12-28 10:30 - 2020-05-11 08:00 - 000007602 _____ () C:\Users\hp\AppData\Local\resmon.resmoncfg ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================