Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 18-11-2022 Exécuté par etien (administrateur) sur DESKTOP-FEDZ (Gigabyte Technology Co., Ltd. B550M AORUS ELITE) (19-11-2022 17:17:38) Exécuté depuis C:\Users\etien\Desktop Profils chargés: etien Plate-forme: Microsoft Windows 10 Professionnel Version 22H2 19045.2251 (X64) Langue: Français (France) Navigateur par défaut: FF Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (C:\Program Files (x86)\Acronis\Agent\aakore.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\bin\bckp_amgr.exe (C:\Program Files (x86)\Acronis\Agent\aakore.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\bin\monitoring-mini.exe (C:\Program Files (x86)\Acronis\Agent\aakore.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\bin\task-manager.exe (C:\Program Files (x86)\Acronis\Agent\aakore.exe ->) (Acronis International GmbH -> Acronis International GmbH.) C:\Program Files (x86)\Acronis\Agent\bin\adp-agent.exe (C:\Program Files (x86)\Acronis\Agent\aakore.exe ->) (Acronis International GmbH -> Acronis International GmbH.) C:\Program Files (x86)\Acronis\Agent\bin\updater.exe (C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe ->) (Acronis International GmbH -> Acronis International GmbH.) C:\Program Files (x86)\Acronis\Agent\bin\adp-rest-util.exe (C:\Program Files\Bitdefender Agent\ProductAgentService.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\26.0.1.233\DiscoverySrv.exe (C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdagent.exe (C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdntwrk.exe (C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdwtxag.exe (C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (S.C. BITDEFENDER S.R.L. -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\wsccommunicator.exe (C:\Program Files\McAfee\WebAdvisor\servicehost.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe (C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\MKCHelper.exe (C:\Program Files\Mozilla Firefox\firefox.exe ->) (NICOLAS_COOLMAN -> Nicolas Coolman) [Fichier non signé] C:\Users\etien\Downloads\ZHPSuite.exe (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3> (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (Discord Inc. -> Discord Inc.) C:\Users\etien\AppData\Local\Discord\app-1.0.9007\Discord.exe <6> (explorer.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender VPN\bdvpnapp.exe (explorer.exe ->) (MUSIC Tribe Brands DE GmbH -> ) C:\Program Files\TC-HELICON\GoXLR_Audio_Driver\W10_x64\GoXLRAudioCplApp.exe (explorer.exe ->) (Razer USA Ltd. -> ) C:\Windows\System32\RZSurroundHelper.exe (explorer.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files\Razer\RzAppEngine\rzappengine.exe <5> (explorer.exe ->) (Riot Games, Inc. -> Riot Games, Inc.) C:\Program Files\Riot Vanguard\vgtray.exe (explorer.exe ->) (Skutta, Kristjan -> ) C:\Program Files (x86)\Steam\steamapps\common\wallpaper_engine\wallpaper32.exe (explorer.exe ->) (TC-Helicon Vocal Technologies Inc. -> ) [Fichier non signé] C:\Program Files (x86)\TC-Helicon\GOXLR\GoXLR App.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler64.exe (HP Inc.) C:\Program Files\WindowsApps\AD2F1837.OMENCommandCenter_1101.2211.6.0_x64__v10z8vjag6ke6\win32\OmenCommandCenterBackground.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <20> (Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (services.exe ->) (Acronis International GmbH -> ) C:\Program Files (x86)\Common Files\Acronis\ActiveProtection\anti_ransomware_service.exe (services.exe ->) (Acronis International GmbH -> ) C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe (services.exe ->) (Acronis International GmbH -> ) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe (services.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\aakore.exe (services.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe (services.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe (services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\ProductAgentService.exe (services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\redline\bdredline.exe (services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe <3> (services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe (services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender VPN\bdvpnService.exe (services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe (services.exe ->) (Even Balance, Inc. -> ) C:\Windows\System32\PnkBstrA.exe (services.exe ->) (Logitech Inc -> Logitech) C:\Program Files\Logitech\LogiCapture\bin\Service\LogiFacecamService.exe (services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft GameInput\x64\gameinputsvc.exe <2> (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_7.70.13002.0_x64__8wekyb3d8bbwe\gamingservices.exe (services.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_7.70.13002.0_x64__8wekyb3d8bbwe\gamingservicesnet.exe (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <4> (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_ccc0ac530b9c1dc5\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (Razer USA Ltd. -> Razer) C:\Program Files (x86)\Razer\RzUpdateEngineService\RzUpdateEngineService.exe (services.exe ->) (Razer USA Ltd. -> Razer) C:\Windows\System32\RZSurroundService.exe (services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe (svchost.exe ->) (Adobe Systems Incorporated) C:\Program Files\WindowsApps\AdobeNotificationClient_3.0.1.1_x86__enpm4xejd91yc\AdobeNotificationClient.exe (svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\SystemOptimizer\SystemOptimizer.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2204.13303.0_x64__8wekyb3d8bbwe\Cortana.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.822.10271.0_x64__8wekyb3d8bbwe\GameBar.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.822.10271.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22092.211.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\WWAHost.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [3086208 2021-06-22] (Riot Games, Inc. -> Riot Games, Inc.) HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [644000 2021-03-23] (Acronis International GmbH -> Acronis International GmbH) HKLM\...\Run: [RZSurroundHelper] => C:\Windows\system32\RZSurroundHelper.exe [384240 2019-11-11] (Razer USA Ltd. -> ) HKLM\...\Run: [Bdagent] => C:\Program Files\Bitdefender\Bitdefender Security\bdagent.exe [989208 2022-11-10] (Bitdefender SRL -> Bitdefender) HKLM\...\Run: [BdVpnApp] => C:\Program Files\Bitdefender\Bitdefender VPN\BdVpnApp.exe [494640 2022-08-17] (Bitdefender SRL -> Bitdefender) HKLM-x32\...\Run: [TrueImageMonitor.exe] => C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [6206360 2021-03-23] (Acronis International GmbH -> ) HKLM-x32\...\Run: [AcronisTibMounterMonitor] => C:\Program Files (x86)\Common Files\Acronis\TibMounter\tib_mounter_monitor.exe [446392 2021-03-23] (Acronis International GmbH -> Acronis International GmbH) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [707256 2021-12-15] (Oracle America, Inc. -> Oracle Corporation) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [1068512 2022-10-28] (Adobe Inc. -> Adobe Inc.) HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-08-04] (Adobe Inc. -> ) HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION HKU\S-1-5-21-2357618718-3798865684-1663513560-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2626480 2022-11-15] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2357618718-3798865684-1663513560-1001\...\Run: [EpicGamesLauncher] => D:\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32696784 2022-11-06] (Epic Games Inc. -> Epic Games, Inc.) HKU\S-1-5-21-2357618718-3798865684-1663513560-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4245352 2022-11-17] (Valve Corp. -> Valve Corporation) HKU\S-1-5-21-2357618718-3798865684-1663513560-1001\...\Run: [Discord] => C:\Users\etien\AppData\Local\Discord\Update.exe [1512104 2021-05-24] (Discord Inc. -> GitHub) HKU\S-1-5-21-2357618718-3798865684-1663513560-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [38789456 2022-10-20] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) HKU\S-1-5-21-2357618718-3798865684-1663513560-1001\...\Run: [WallpaperEngine] => C:\Program Files (x86)\Steam\steamapps\common\wallpaper_engine\wallpaper32.exe [2982608 2022-06-11] (Skutta, Kristjan -> ) HKU\S-1-5-21-2357618718-3798865684-1663513560-1001\...\Run: [RzAppEngine] => C:\Program Files\Razer\RzAppEngine\rzappengine.exe [1640880 2019-08-30] (Razer USA Ltd. -> Razer Inc.) HKU\S-1-5-21-2357618718-3798865684-1663513560-1001\...\Run: [Adobe Acrobat Synchronizer] => "C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe" (Pas de fichier) HKU\S-1-5-21-2357618718-3798865684-1663513560-1001\...\Run: [utweb] => C:\Users\etien\AppData\Roaming\uTorrent Web\utweb.exe [6282912 2022-07-22] (BitTorrent Inc -> BitTorrent Inc.) HKU\S-1-5-21-2357618718-3798865684-1663513560-1001\...\RunOnce: [Application Restart #0] => C:\Program Files\Razer\RzAppEngine\rzappengine.exe [1640880 2019-08-30] (Razer USA Ltd. -> Razer Inc.) HKU\S-1-5-21-2357618718-3798865684-1663513560-1001\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 HKLM\Software\Microsoft\Active Setup\Installed Components: [{7D2B3E1D-D096-4594-9D8F-A6667F12E0AC}] -> C:\Program Files\Razer\RzAppEngine\1.14.0.0\Installer\chrmstp.exe [2021-08-02] (Razer USA Ltd. -> Razer Inc.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\107.0.5304.107\Installer\chrmstp.exe [2022-11-10] (Google LLC -> Google LLC) HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\107.1.45.127\Installer\chrmstp.exe [2022-11-15] (Brave Software, Inc. -> Brave Software, Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GoXLR App.lnk [2022-08-25] ShortcutTarget: GoXLR App.lnk -> C:\Program Files (x86)\TC-Helicon\GOXLR\GoXLR App.exe (TC-Helicon Vocal Technologies Inc. -> ) [Fichier non signé] Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GoXLR Control Panel Autostart.lnk [2022-01-29] ShortcutTarget: GoXLR Control Panel Autostart.lnk -> C:\Program Files\TC-HELICON\GoXLR_Audio_Driver\W10_x64\GoXLRAudioCplApp.exe (MUSIC Tribe Brands DE GmbH -> ) ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {1379248C-3D3C-46AF-8849-16EED2BED858} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-2357618718-3798865684-1663513560-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4189064 2022-11-15] (Microsoft Corporation -> Microsoft Corporation) Task: {1427A8D8-1C4F-4ABE-9ED4-0695A7063443} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655864 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation) Task: {16D5F8E0-34CD-48B6-9FF6-16CDC9E86D60} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [1938792 2021-09-08] (Microsoft Corporation -> Microsoft Corporation) Task: {1D7C4C65-FEF8-4F86-BB3A-6A8B23E2D548} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4669264 2022-10-20] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "01418cda-5d48-4d17-bea8-a459d2ab9c49" --version "6.05.10110" --silent Task: {1FF9BDDC-5019-48D0-95DA-CB4D4397A2BA} - System32\Tasks\CCleanerSkipUAC - etien => C:\Program Files\CCleaner\CCleaner.exe [32472400 2022-10-20] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) Task: {276444CE-52F2-485E-8470-9058551EAFFC} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [908856 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation) Task: {2D9FBFFB-C3FA-4046-888A-690E038AAC3B} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649784 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation) Task: {30E85A95-DA3C-4D69-8D5F-0AE339912B35} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144280 2022-11-16] (Microsoft Corporation -> Microsoft Corporation) Task: {468DF68C-3C69-4926-B3A5-923F234F8118} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2576728 2022-11-06] (Overwolf Ltd -> Overwolf LTD) Task: {4ADFF037-3DEB-4268-B1AC-37F2F33B3963} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154456 2021-07-24] (Google LLC -> Google LLC) Task: {4AE57FB5-9811-409B-8D1D-9F19FA63F5D0} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2463600 2021-09-08] (Microsoft Corporation -> Microsoft Corporation) Task: {5F85AA3B-7592-4214-A0DE-1EB1AB3A61BA} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {6074E020-FC0C-4512-9F07-7B5F7AF242F1} - System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => C:\Program Files\Bitdefender Agent\26.0.1.233\WatchDog.exe [1053264 2022-07-25] (Bitdefender SRL -> Bitdefender) Task: {71B143A7-86B3-411C-BB53-2E0E9714160C} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2335600 2021-09-08] (Microsoft Corporation -> Microsoft) Task: {741656C5-A61C-4A6F-964E-F19B817D4D9F} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [908856 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation) Task: {7927E44F-F57F-46A0-9924-38781AE40251} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB" Task: {7B680A68-9270-43D7-A16E-A63F356D9338} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore{C9C0DB56-B264-459B-8790-7F91F23A2369} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [174976 2022-09-26] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {7FDF04F5-7A77-439A-B36C-42534E017F98} - System32\Tasks\SystemOptimizer => C:\Program Files\HP\SystemOptimizer\SystemOptimizer.exe [152048 2022-11-18] (HP Inc. -> HP Inc.) Task: {82B5A938-48FB-4E49-8F38-8E4D1466C343} - System32\Tasks\Microsoft_MKC_Logon_Task_ceip.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ceip.exe [32632 2021-09-08] (Microsoft Corporation -> Microsoft) Task: {935336F9-80F0-4362-A46B-33EE80389B1D} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26154376 2022-11-16] (Microsoft Corporation -> Microsoft Corporation) Task: {9734F2F4-9627-4323-9177-29827D38CC15} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [1938792 2021-09-08] (Microsoft Corporation -> Microsoft Corporation) Task: {A8F63FBC-75DF-439D-8D65-285C34CCE47D} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-10-20] (Piriform Software Ltd -> Piriform) Task: {AA3626A3-E93C-4B23-9A62-4AE081EDBD0B} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2463600 2021-09-08] (Microsoft Corporation -> Microsoft Corporation) Task: {AEFCDE01-32CF-47C0-8653-5526CB340F73} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3342376 2022-10-17] (Nvidia Corporation -> NVIDIA Corporation) Task: {BCB8B41A-8665-4BD3-AFC0-3246F98C5051} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26154376 2022-11-16] (Microsoft Corporation -> Microsoft Corporation) Task: {D5D64EB0-F787-4AB0-801D-3A7F6D5B2C13} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [66936 2022-11-01] (Microsoft Corporation -> Microsoft Corporation) Task: {D914E26B-D9DD-4B2A-8027-3C4BC89F1DB7} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655864 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation) Task: {DE5EADB9-01B2-4818-82A9-50458335568A} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655864 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation) Task: {E45C028C-B05B-4672-B259-2B0AFB961B73} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144280 2022-11-16] (Microsoft Corporation -> Microsoft Corporation) Task: {E773E0B6-8662-44BA-A404-00E75690E498} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154456 2021-07-24] (Google LLC -> Google LLC) Task: {EE210855-62FB-4CE9-828C-3BCA0CE85E84} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA{A439240D-423F-4B35-9E8D-33E07BA5FA46} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [174976 2022-09-26] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {F673ED0F-7FED-47EF-88FB-F4C93D10B7D6} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2022-08-30] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {F7EC78AC-B3D6-4559-B004-FE52976BCA8C} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4189064 2022-11-15] (Microsoft Corporation -> Microsoft Corporation) Task: {FBE4F7FC-19D6-4443-8ECF-26DAA2DB77B0} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655864 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\Windows\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe Task: C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{9f83f8a9-f59c-4e77-b192-fd7ff73e391b}: [NameServer] 198.51.100.1 Tcpip\..\Interfaces\{9f83f8a9-f59c-4e77-b192-fd7ff73e391b}: [DhcpNameServer] 8.8.8.8 Tcpip\..\Interfaces\{f1940257-0d64-430c-be0e-13fd54dadfb1}: [NameServer] 1.1.1.1,1.0.0.1 Tcpip\..\Interfaces\{f1940257-0d64-430c-be0e-13fd54dadfb1}: [DhcpNameServer] 192.168.1.1 Edge: ======= Edge Profile: C:\Users\etien\AppData\Local\Microsoft\Edge\User Data\Default [2022-09-14] Edge Extension: (Bitdefender Anti-tracker) - C:\Users\etien\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dbconhplchnbippmjabbcedokimacfjl [2022-08-14] Edge Extension: (Malwarebytes Browser Guard) - C:\Users\etien\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2022-09-04] Edge HKLM-x32\...\Edge\Extension: [dbconhplchnbippmjabbcedokimacfjl] Edge HKLM-x32\...\Edge\Extension: [ihcjicgdanjaechkgeegckofjjedodee] Edge HKLM-x32\...\Edge\Extension: [pdhdldaneekjpoaldekpgomomeabpnek] FireFox: ======== FF DefaultProfile: o6konjna.default FF ProfilePath: C:\Users\etien\AppData\Roaming\Mozilla\Firefox\Profiles\o6konjna.default [2022-08-14] FF ProfilePath: C:\Users\etien\AppData\Roaming\Mozilla\Firefox\Profiles\m00z1xcp.default-release [2022-11-19] FF Notifications: Mozilla\Firefox\Profiles\m00z1xcp.default-release -> hxxps://www.instagram.com; hxxps://fan-kai-cie.leforum.tv; hxxps://www.eurosport.de FF Extension: (BetterTTV) - C:\Users\etien\AppData\Roaming\Mozilla\Firefox\Profiles\m00z1xcp.default-release\Extensions\firefox@betterttv.net.xpi [2022-10-03] FF Extension: (Dashlane) - C:\Users\etien\AppData\Roaming\Mozilla\Firefox\Profiles\m00z1xcp.default-release\Extensions\jetpack-extension@dashlane.com.xpi [2022-11-14] [UpdateUrl:hxxps://ws1.dashlane.com/5/binaries/query?logins=&platform=firefox&target=ff_web_extension&format=json&version=] FF Extension: (7TV) - C:\Users\etien\AppData\Roaming\Mozilla\Firefox\Profiles\m00z1xcp.default-release\Extensions\{7ef0f00c-2ebe-4626-8ed7-3185847fcfad}.xpi [2022-08-15] FF Extension: (Violentmonkey) - C:\Users\etien\AppData\Roaming\Mozilla\Firefox\Profiles\m00z1xcp.default-release\Extensions\{aecec67f-0d10-4fa7-b7c7-609a2db280cf}.xpi [2022-10-14] FF Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\etien\AppData\Roaming\Mozilla\Firefox\Profiles\m00z1xcp.default-release\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2022-08-29] FF HKLM\...\Firefox\Extensions: [bdwtwe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdwteff.xpi FF Extension: (Bitdefender Wallet) - C:\Program Files\Bitdefender\Bitdefender Security\bdwteff.xpi [2021-06-29] [UpdateUrl:hxxps://download.bitdefender.com/windows/desktop/connect/wallet/updates.json ] FF HKLM\...\Firefox\Extensions: [bdtbe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbef.xpi FF Extension: (Bitdefender Anti-tracker) - C:\Program Files\Bitdefender\Bitdefender Security\bdtbef.xpi [2020-09-17] [UpdateUrl:hxxps://download.bitdefender.com/windows/desktop/connect/antitracker/updates.json ] FF HKLM-x32\...\Firefox\Extensions: [bdwtwe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdwteff.xpi FF HKLM-x32\...\Firefox\Extensions: [bdtbe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbef.xpi FF Plugin: @java.com/DTPlugin,version=11.321.2 -> C:\Program Files\Java\jre1.8.0_321\bin\dtplugin\npDeployJava1.dll [2022-02-12] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.321.2 -> C:\Program Files\Java\jre1.8.0_321\bin\plugin2\npjp2.dll [2022-02-12] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-11-01] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2022-10-28] (Adobe Inc. -> Adobe Systems) FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll [2011-11-03] (Electronic Sports Network i Sverige AB -> ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [2013-09-16] (ESN Social Software AB) [Fichier non signé] FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-11-01] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2022-10-28] (Adobe Inc. -> Adobe Systems) FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\bd_js_config.js [2022-08-14] <==== ATTENTION (Pointe vers un fichier *.cfg) FF ExtraCheck: C:\Program Files\mozilla firefox\bd_config.cfg [2022-08-14] <==== ATTENTION Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\etien\AppData\Local\Google\Chrome\User Data\Default [2022-11-04] CHR Notifications: Default -> hxxps://www.reddit.com CHR Extension: (Tampermonkey) - C:\Users\etien\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2022-10-28] CHR Extension: (McAfee® WebAdvisor) - C:\Users\etien\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2022-09-18] CHR Extension: (Bitdefender Wallet) - C:\Users\etien\AppData\Local\Google\Chrome\User Data\Default\Extensions\gannpgaobkkhmpomoijebaigcapoeebl [2022-09-18] CHR Extension: (Google Docs hors connexion) - C:\Users\etien\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-11-04] CHR Extension: (Malwarebytes Browser Guard) - C:\Users\etien\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2022-10-28] CHR Extension: (Bitdefender Anti-tracker) - C:\Users\etien\AppData\Local\Google\Chrome\User Data\Default\Extensions\khndhdhbebhaddchcgnalcjlaekbbeof [2022-09-18] CHR Extension: (Morpheon Dark) - C:\Users\etien\AppData\Local\Google\Chrome\User Data\Default\Extensions\mafbdhjdkjnoafhfelkjpchpaepjknad [2022-07-25] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\etien\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-07-24] CHR Profile: C:\Users\etien\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-10-28] CHR Profile: C:\Users\etien\AppData\Local\Google\Chrome\User Data\Profile 1 [2022-10-30] CHR StartupUrls: Profile 1 -> "hxxps://www.google.fr/" CHR DefaultSearchURL: Profile 1 -> hxxps://fr.search.yahoo.com/search?fr=mcafee&type=E210FR91105G0&p={searchTerms} CHR DefaultSearchKeyword: Profile 1 -> mcafee CHR DefaultSuggestURL: Profile 1 -> hxxps://fr.search.yahoo.com/sugg/gossip/gossip-fr-partner?output=fxjson&appid=mca&source=yahoo_mcafee_searchassist&command={searchTerms} CHR Extension: (McAfee® WebAdvisor) - C:\Users\etien\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2022-10-28] CHR Extension: (Black & white theme) - C:\Users\etien\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fmohofkmppcgglcmlccpbokkkefigipi [2022-02-15] CHR Extension: (Bitdefender Wallet) - C:\Users\etien\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gannpgaobkkhmpomoijebaigcapoeebl [2022-10-28] CHR Extension: (Google Docs hors connexion) - C:\Users\etien\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-02-15] CHR Extension: (Malwarebytes Browser Guard) - C:\Users\etien\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2022-10-28] CHR Extension: (Bitdefender Anti-tracker) - C:\Users\etien\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\khndhdhbebhaddchcgnalcjlaekbbeof [2022-10-28] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\etien\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-02-15] CHR Profile: C:\Users\etien\AppData\Local\Google\Chrome\User Data\System Profile [2022-10-28] CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] CHR HKLM-x32\...\Chrome\Extension: [gannpgaobkkhmpomoijebaigcapoeebl] CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee] CHR HKLM-x32\...\Chrome\Extension: [khndhdhbebhaddchcgnalcjlaekbbeof] Brave: ======= BRA Profile: C:\Users\etien\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2022-11-13] BRA Extension: (BetterTTV) - C:\Users\etien\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2022-10-30] BRA Extension: (7TV) - C:\Users\etien\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\ammjkodgmmoknidbanneddgankgfejfh [2022-09-26] BRA Extension: (Dashlane - Gestionnaire de mots de passe) - C:\Users\etien\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\fdjamakpfbbddfjaooikfcpapjohcfmg [2022-11-04] BRA Extension: (Bitdefender Wallet) - C:\Users\etien\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\gannpgaobkkhmpomoijebaigcapoeebl [2022-09-26] BRA Extension: (Bitdefender Anti-tracker) - C:\Users\etien\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\khndhdhbebhaddchcgnalcjlaekbbeof [2022-09-26] BRA Extension: (Brave Local Data Files Updater) - C:\Users\etien\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2022-11-04] BRA Extension: (Brave NTP background images) - C:\Users\etien\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2022-09-26] BRA Extension: (Brave Ads Resources) - C:\Users\etien\AppData\Local\BraveSoftware\Brave-Browser\User Data\bgifagoclclhhoflocdefiklgodpihog [2022-11-04] BRA Extension: (Wallet Data Files Updater) - C:\Users\etien\AppData\Local\BraveSoftware\Brave-Browser\User Data\BraveWallet [2022-09-26] BRA Extension: (Brave Ad Block Updater (Default)) - C:\Users\etien\AppData\Local\BraveSoftware\Brave-Browser\User Data\cffkpbalmllkdoenhmdmpbkajipdjfam [2022-11-09] BRA Extension: (Brave Ad Block Updater (AdGuard Français)) - C:\Users\etien\AppData\Local\BraveSoftware\Brave-Browser\User Data\emaecjinaegfkoklcdafkiocjhoeilao [2022-11-09] BRA Extension: (Brave Ads Resources) - C:\Users\etien\AppData\Local\BraveSoftware\Brave-Browser\User Data\ijgkfgmfiinppefbonemjidmkhgbonei [2022-09-26] BRA Extension: (Brave SpeedReader Updater) - C:\Users\etien\AppData\Local\BraveSoftware\Brave-Browser\User Data\jicbkmdloagakknpihibphagfckhjdih [2022-09-26] BRA Extension: (Brave NTP sponsored images) - C:\Users\etien\AppData\Local\BraveSoftware\Brave-Browser\User Data\lcenblphbmngnohghkhpojmpflebkcpd [2022-11-09] BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\etien\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2022-11-04] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 aakore; C:\Program Files (x86)\Acronis\Agent\aakore.exe [9022120 2021-03-23] (Acronis International GmbH -> Acronis International GmbH) R2 AcronisActiveProtectionService; C:\Program Files (x86)\Common Files\Acronis\ActiveProtection\anti_ransomware_service.exe [12952232 2021-03-23] (Acronis International GmbH -> ) S4 AcronisCyberProtectionService; C:\Program Files\Acronis\CyberProtect\cyber-protect-service.exe [1425256 2021-03-23] (Acronis International GmbH -> Acronis International GmbH) R2 AcrSch2Svc; C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe [1052280 2021-03-23] (Acronis International GmbH -> Acronis International GmbH) R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [923616 2022-10-28] (Adobe Inc. -> Adobe Inc.) R2 afcdpsrv; C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe [6391536 2021-07-29] (Acronis International GmbH -> ) S3 AfVpnService; C:\Program Files\Bitdefender\Bitdefender VPN\hydra.sdk.windows.service.exe [353840 2022-08-16] (Bitdefender SRL -> AnchorFree Inc.) R2 BDAuxSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [821784 2022-11-10] (Bitdefender SRL -> Bitdefender) R2 BDProtSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [821784 2022-11-10] (Bitdefender SRL -> Bitdefender) R2 bdredline; C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe [2995792 2022-01-28] (Bitdefender SRL -> Bitdefender) R2 bdredline_agent; C:\Program Files\Bitdefender Agent\redline\bdredline.exe [2454632 2022-02-10] (Bitdefender SRL -> Bitdefender) R2 BdVpnService; C:\Program Files\Bitdefender\Bitdefender VPN\bdvpnservice.exe [453168 2022-08-17] (Bitdefender SRL -> Bitdefender) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8901968 2021-11-05] (BattlEye Innovations e.K. -> ) S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [174976 2022-09-26] (Brave Software, Inc. -> BraveSoftware Inc.) S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [174976 2022-09-26] (Brave Software, Inc. -> BraveSoftware Inc.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12515768 2022-11-16] (Microsoft Corporation -> Microsoft Corporation) S3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [9946216 2022-11-17] (Electronic Arts, Inc. -> Electronic Arts) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [811496 2022-09-19] (EasyAntiCheat Oy -> Epic Games, Inc) S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [584680 2022-08-15] (EasyAntiCheat Oy -> Epic Games, Inc.) S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [16029456 2022-09-19] (Epic Games Inc. -> Epic Games, Inc.) S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\22.225.1026.0001\FileSyncHelper.exe [3476368 2022-11-15] (Microsoft Corporation -> Microsoft Corporation) R2 LogiFacecamService; C:\Program Files\Logitech\LogiCapture\bin\Service\LogiFacecamService.exe [497568 2021-10-25] (Logitech Inc -> Logitech) S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [8765464 2022-09-05] (Malwarebytes Inc. -> Malwarebytes) R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [860640 2022-11-11] (McAfee, LLC -> McAfee, LLC) R2 mmsminisrv; C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe [4878840 2021-03-23] (Acronis International GmbH -> Acronis International GmbH) S3 mobile_backup_server; C:\Program Files (x86)\Common Files\Acronis\MobileBackupServer\mobile_backup_server.exe [3004128 2021-03-23] (Acronis International GmbH -> Acronis International GmbH) S3 mobile_backup_status_server; C:\Program Files (x86)\Acronis\TrueImageHome\mobile_backup_status_server.exe [2136488 2021-03-23] (Acronis International GmbH -> ) S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\22.225.1026.0001\OneDriveUpdaterService.exe [3842480 2022-11-15] (Microsoft Corporation -> Microsoft Corporation) S3 OverwolfUpdater; C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2576728 2022-11-06] (Overwolf Ltd -> Overwolf LTD) R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2021-08-07] (Even Balance, Inc. -> ) R2 ProductAgentService; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [789072 2022-07-25] (Bitdefender SRL -> Bitdefender) R2 Razer Update Service; C:\Program Files (x86)\Razer\RzUpdateEngineService\RzUpdateEngineService.exe [408912 2020-04-02] (Razer USA Ltd. -> Razer) R2 RzSndSrv; C:\Windows\system32\RZSurroundService.exe [353520 2019-11-11] (Razer USA Ltd. -> Razer) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [224216 2022-11-11] (Microsoft Windows Publisher -> Microsoft Corporation) R2 syncagentsrv; C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe [7398360 2021-03-23] (Acronis International GmbH -> ) R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [16196920 2022-11-09] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) S3 Tib Mounter Service; C:\Program Files (x86)\Common Files\Acronis\TibMounter64\tib_mounter_service.exe [5910328 2021-03-23] (Acronis International GmbH -> Acronis International GmbH) R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe [280088 2022-11-10] (Bitdefender SRL -> Bitdefender) S3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [10147296 2021-06-22] (Riot Games, Inc. -> Riot Games, Inc.) R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [821784 2022-11-10] (Bitdefender SRL -> Bitdefender) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\NisSrv.exe [3120992 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe [133544 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation) S3 BraveElevationService; "C:\Program Files\BraveSoftware\Brave-Browser\Application\107.1.45.127\elevation_service.exe" [X] R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_ccc0ac530b9c1dc5\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_ccc0ac530b9c1dc5\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R3 AmdSMBusSdk; C:\Windows\System32\drivers\amdembsmbus.sys [42808 2021-04-07] (Advanced Micro Devices INC. -> Advanced Micro Devices, Inc) R3 amdWDT; C:\Windows\System32\drivers\amdwdt.sys [40136 2021-02-04] (Advanced Micro Devices INC. -> Advanced Micro Devices, Inc) R1 atc; C:\Windows\System32\DRIVERS\atc.sys [5118384 2022-10-04] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender S.R.L. Bucharest, ROMANIA) S3 atvi-randgrid; C:\ProgramData\Battle.net_components\randgridauks\randgrid.sys [2513192 2022-11-10] (Activision Publishing Inc -> Activision Blizzard, Inc.) R2 BdDci; C:\Windows\System32\DRIVERS\bddci.sys [798128 2022-11-10] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender) S0 bdelam; C:\Windows\System32\drivers\bdelam.sys [22976 2020-12-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Bitdefender) S3 bdprivmon; C:\Windows\System32\DRIVERS\bdprivmon.sys [33208 2022-02-01] (Microsoft Windows Hardware Compatibility Publisher -> © Bitdefender SRL) S3 bduefiscan; C:\Windows\system32\DRIVERS\bduefiscan.sys [55864 2021-07-08] (Bitdefender SRL -> Bitdefender) R1 bdvpn_netfilter; C:\Windows\System32\drivers\bdvpn_netfilter.sys [94600 2021-09-16] (Pango Inc. -> Pango Inc) S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Fichier non signé] S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Fichier non signé] S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus2.sys [160376 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R3 DroidCam; C:\Windows\System32\drivers\droidcam.sys [32240 2020-04-10] (Microsoft Windows Hardware Compatibility Publisher -> Dev47Apps) R3 DroidCamVideo; C:\Windows\System32\DriverStore\FileRepository\droidcamvideo.inf_amd64_47e18363cbf3dfe0\droidcamvideo.sys [33784 2021-04-10] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) R2 file_protector; C:\Windows\System32\DRIVERS\file_protector.sys [720392 2021-07-29] (Acronis International GmbH -> Acronis International GmbH) R0 file_tracker; C:\Windows\System32\DRIVERS\file_tracker.sys [392840 2021-07-29] (Acronis International GmbH -> Acronis International GmbH) R0 fltsrv; C:\Windows\System32\DRIVERS\fltsrv.sys [183944 2021-07-29] (Acronis International GmbH -> Acronis International GmbH) R0 Gemma; C:\Windows\System32\DRIVERS\gemma.sys [1274296 2022-09-23] (Microsoft Windows Hardware Compatibility Publisher -> BitDefender S.R.L. Bucharest, ROMANIA) R3 goxlr_audio; C:\Windows\System32\drivers\goxlr_audio.sys [404488 2021-06-28] (Microsoft Windows Hardware Compatibility Publisher -> ) R3 goxlr_audioks; C:\Windows\System32\drivers\goxlr_audioks.sys [53768 2021-06-28] (Microsoft Windows Hardware Compatibility Publisher -> ) S3 Ignis; C:\Windows\system32\DRIVERS\ignis.sys [185312 2020-10-07] (Bitdefender SRL -> Bitdefender) S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [21480 2022-09-05] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) S3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [239544 2022-09-05] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R0 mtinvme; C:\Windows\System32\drivers\mtinvme.sys [184744 2021-03-12] (Micron Technology, Inc. -> Micron Technology, Inc.) S0 ngelam; C:\Windows\System32\drivers\ngelam.sys [15816 2021-03-23] (Microsoft Windows Early Launch Anti-malware Publisher -> Acronis International GmbH) R1 ngscan; C:\Windows\System32\DRIVERS\ngscan.sys [179104 2021-03-23] (Acronis International GmbH -> Acronis International GmbH) R3 NvModuleTracker; C:\Windows\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [45656 2022-07-14] (Nvidia Corporation -> NVIDIA Corporation) R3 sRZVAD; C:\Windows\System32\drivers\RZSurround.sys [172208 2019-11-11] (Razer USA Ltd. -> Windows (R) Win 7 DDK provider) S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [167544 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R3 tap0901; C:\Windows\System32\drivers\tap0901.sys [47920 2021-09-16] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project) S3 tib; C:\Windows\system32\DRIVERS\tib.sys [887032 2021-07-29] (Acronis International GmbH -> Acronis International GmbH) R2 tib_mounter; C:\Windows\system32\DRIVERS\tib_mounter.sys [175648 2021-07-29] (Acronis International GmbH -> Acronis International GmbH) S3 tnd; C:\Windows\system32\DRIVERS\tnd.sys [694920 2021-07-29] (Acronis International GmbH -> Acronis International GmbH) R0 trufos; C:\Windows\System32\DRIVERS\trufos.sys [633264 2022-04-16] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender) R3 VBAudioVACMME; C:\Windows\System32\drivers\vbaudio_cable64_win7.sys [41192 2020-07-31] (Vincent Burel -> Windows (R) Win 7 DDK provider) S3 VBAudioVMVAIOMME; C:\Windows\System32\drivers\vbaudio_vmvaio64_win10.sys [71712 2021-11-27] (Vincent Burel -> Windows (R) Win 7 DDK provider) S1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [8241992 2021-06-22] (Riot Games, Inc. -> Riot Games, Inc.) R2 virtual_file; C:\Windows\System32\DRIVERS\virtual_file.sys [334984 2021-07-29] (Acronis International GmbH -> Acronis International GmbH) R0 vlflt; C:\Windows\System32\DRIVERS\vlflt.sys [480184 2022-08-30] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender) R0 volume_tracker; C:\Windows\System32\DRIVERS\volume_tracker.sys [251016 2021-07-29] (Acronis International GmbH -> Acronis International GmbH) S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [49576 2022-06-23] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [452856 2022-06-23] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [91384 2022-06-23] (Microsoft Windows -> Microsoft Corporation) S3 HWiNFO_161; \??\C:\Users\etien\AppData\Local\Temp\HWiNFO64A_161.SYS [X] <==== ATTENTION ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Trois mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-11-19 17:17 - 2022-11-19 17:18 - 000049360 _____ C:\Users\etien\Desktop\FRST.txt 2022-11-19 17:17 - 2022-11-19 17:17 - 000000000 ____D C:\FRST 2022-11-19 17:16 - 2022-11-19 17:16 - 002375680 _____ (Farbar) C:\Users\etien\Desktop\FRST64.exe 2022-11-19 17:08 - 2022-11-19 17:08 - 000000755 _____ C:\Users\etien\Desktop\ZHPFix.txt 2022-11-19 16:51 - 2022-11-19 16:51 - 000000758 _____ C:\Users\etien\Desktop\Documents - Raccourci.lnk 2022-11-19 16:48 - 2022-11-19 16:48 - 000624082 _____ C:\Users\etien\Desktop\ZHPDiag.html 2022-11-19 16:48 - 2022-11-19 16:48 - 000513513 _____ C:\Users\etien\Desktop\ZHPDiag.txt 2022-11-19 16:42 - 2022-11-19 17:08 - 000000000 ____D C:\Users\etien\AppData\Roaming\ZHP 2022-11-19 16:42 - 2022-11-19 16:42 - 003509960 _____ (Nicolas Coolman) C:\Users\etien\Downloads\ZHPSuite.exe 2022-11-19 16:42 - 2022-11-19 16:42 - 000000865 _____ C:\Users\etien\Desktop\ZHPSuite.lnk 2022-11-19 16:42 - 2022-11-19 16:42 - 000000000 ____D C:\Users\etien\AppData\Local\ZHP 2022-11-19 14:47 - 2022-11-19 14:47 - 000003416 _____ C:\Windows\system32\Tasks\CCleanerCrashReporting 2022-11-19 14:47 - 2022-11-19 14:47 - 000000760 _____ C:\Windows\Tasks\CCleanerCrashReporting.job 2022-11-19 03:43 - 2022-11-19 03:43 - 000003768 _____ C:\Windows\system32\Tasks\SystemOptimizer 2022-11-19 02:58 - 2022-11-19 02:58 - 000000000 ____D C:\Users\etien\AppData\LocalLow\Kinetic Games 2022-11-19 02:50 - 2022-11-19 02:50 - 000000222 _____ C:\Users\etien\Desktop\Phasmophobia.url 2022-11-18 21:30 - 2022-11-18 21:30 - 000000000 ____D C:\Users\etien\AppData\LocalLow\Innersloth 2022-11-18 21:29 - 2022-11-18 21:50 - 000000000 ____D C:\Users\etien\AppData\Roaming\bettercrewlink 2022-11-18 21:29 - 2022-11-18 21:29 - 000002480 _____ C:\Users\etien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Better-CrewLink.lnk 2022-11-18 21:29 - 2022-11-18 21:29 - 000002472 _____ C:\Users\etien\Desktop\Better-CrewLink.lnk 2022-11-18 21:29 - 2022-11-18 21:29 - 000000000 ____D C:\Users\etien\AppData\Local\bettercrewlink-updater 2022-11-18 21:28 - 2022-11-18 21:28 - 186241390 _____ (OhMyGuus) C:\Users\etien\Downloads\Better-CrewLink-Setup-3.0.5.exe 2022-11-18 20:59 - 2022-11-18 20:59 - 000000222 _____ C:\Users\etien\Desktop\Among Us.url 2022-11-18 17:43 - 2022-11-18 17:43 - 000000000 ___HD C:\$WinREAgent 2022-11-18 17:40 - 2022-11-18 21:40 - 000000000 ____D C:\Program Files\RUXIM 2022-11-17 18:22 - 2022-11-19 14:43 - 000000000 ____D C:\Program Files\Mozilla Firefox 2022-11-16 20:07 - 2022-11-15 06:53 - 002236992 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe 2022-11-16 20:07 - 2022-11-15 06:53 - 002236992 _____ C:\Windows\system32\vulkaninfo.exe 2022-11-16 20:07 - 2022-11-15 06:53 - 001642560 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2022-11-16 20:07 - 2022-11-15 06:53 - 001642560 _____ C:\Windows\SysWOW64\vulkaninfo.exe 2022-11-16 20:07 - 2022-11-15 06:53 - 001487872 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2022-11-16 20:07 - 2022-11-15 06:53 - 001444408 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll 2022-11-16 20:07 - 2022-11-15 06:53 - 001444408 _____ C:\Windows\system32\vulkan-1.dll 2022-11-16 20:07 - 2022-11-15 06:53 - 001226736 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2022-11-16 20:07 - 2022-11-15 06:53 - 001168960 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll 2022-11-16 20:07 - 2022-11-15 06:53 - 001168960 _____ C:\Windows\SysWOW64\vulkan-1.dll 2022-11-16 20:07 - 2022-11-15 06:49 - 001532424 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2022-11-16 20:07 - 2022-11-15 06:49 - 001191936 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2022-11-16 20:07 - 2022-11-15 06:49 - 000851480 _____ (NVIDIA Corporation) C:\Windows\system32\nvml.dll 2022-11-16 20:07 - 2022-11-15 06:49 - 000671792 _____ C:\Windows\system32\nvofapi64.dll 2022-11-16 20:07 - 2022-11-15 06:49 - 000507432 _____ C:\Windows\SysWOW64\nvofapi.dll 2022-11-16 20:07 - 2022-11-15 06:48 - 002162688 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2022-11-16 20:07 - 2022-11-15 06:48 - 001618936 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2022-11-16 20:07 - 2022-11-15 06:48 - 000950280 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2022-11-16 20:07 - 2022-11-15 06:48 - 000738312 _____ (NVIDIA Corporation) C:\Windows\system32\nvidia-smi.exe 2022-11-16 20:07 - 2022-11-15 06:48 - 000734720 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2022-11-16 20:07 - 2022-11-15 06:47 - 012453896 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2022-11-16 20:07 - 2022-11-15 06:47 - 010220552 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2022-11-16 20:07 - 2022-11-15 06:47 - 005891080 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2022-11-16 20:07 - 2022-11-15 06:47 - 005857280 _____ (NVIDIA Corporation) C:\Windows\system32\nvcudadebugger.dll 2022-11-16 20:07 - 2022-11-15 06:47 - 005817336 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2022-11-16 20:07 - 2022-11-15 06:47 - 003334664 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2022-11-16 20:07 - 2022-11-15 06:47 - 000458240 _____ (NVIDIA Corporation) C:\Windows\system32\nvdebugdump.exe 2022-11-16 20:07 - 2022-11-15 06:46 - 000853016 _____ (NVIDIA Corporation) C:\Windows\system32\MCU.exe 2022-11-16 20:07 - 2022-11-15 06:45 - 007643384 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2022-11-16 20:07 - 2022-11-15 06:45 - 006511856 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2022-11-16 20:07 - 2022-11-13 13:23 - 000100633 _____ C:\Windows\system32\nvinfo.pb 2022-11-15 18:11 - 2022-11-15 18:11 - 000003194 _____ C:\Windows\system32\Tasks\OneDrive Per-Machine Standalone Update Task 2022-11-15 18:11 - 2022-11-15 18:11 - 000002170 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2022-11-14 22:30 - 2022-11-14 22:30 - 000002511 _____ C:\Users\etien\Desktop\Hearthstone Deck Tracker.lnk 2022-11-12 11:19 - 2022-11-11 15:51 - 000415688 __RSH C:\bootmgr 2022-11-12 11:19 - 2019-12-07 10:08 - 000000001 ___SH C:\BOOTNXT 2022-11-11 15:51 - 2022-11-11 15:51 - 000688128 _____ C:\Windows\system32\FsNVSDeviceSource.dll 2022-11-11 15:51 - 2022-11-11 15:51 - 000288768 _____ C:\Windows\system32\Windows.Management.InprocObjects.dll 2022-11-11 15:51 - 2022-11-11 15:51 - 000073216 _____ C:\Windows\system32\nettraceex.dll 2022-11-11 15:51 - 2022-11-11 15:51 - 000012253 _____ C:\Windows\system32\DrtmAuthTxt.wim 2022-11-10 18:38 - 2022-11-10 18:38 - 000798128 _____ (Bitdefender) C:\Windows\system32\Drivers\bddci.sys 2022-11-07 18:03 - 2022-11-07 18:03 - 000003936 _____ C:\Windows\system32\Tasks\CCleaner Update 2022-11-06 20:07 - 2022-11-08 19:56 - 000000340 _____ C:\Users\etien\Desktop\ferme a bois.txt 2022-11-06 15:08 - 2022-11-06 15:08 - 000049523 _____ C:\Users\etien\Downloads\inventorysorter-1.19.2-21.0.4.jar 2022-11-05 18:43 - 2022-11-05 18:43 - 001160510 _____ C:\Users\etien\Downloads\Borkon - Wither Crammer(1).zip 2022-11-05 16:57 - 2022-11-05 16:57 - 001160510 _____ C:\Users\etien\Downloads\Borkon - Wither Crammer.zip 2022-11-05 14:48 - 2022-11-05 14:48 - 000219863 _____ C:\Users\etien\Downloads\InventorySorter-1.8.10-1.19.jar 2022-11-02 20:17 - 2022-11-02 20:17 - 000003976 _____ C:\Windows\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-11-02 20:17 - 2022-11-02 20:17 - 000003940 _____ C:\Windows\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-11-02 20:17 - 2022-10-17 07:25 - 002890296 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2022-11-02 20:17 - 2022-10-17 07:25 - 002224696 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2022-11-02 20:16 - 2022-11-02 20:16 - 000004308 _____ C:\Windows\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-11-02 20:16 - 2022-11-02 20:16 - 000003894 _____ C:\Windows\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-11-02 20:16 - 2022-11-02 20:16 - 000003858 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-11-02 20:16 - 2022-11-02 20:16 - 000003858 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-11-02 20:16 - 2022-11-02 20:16 - 000003858 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-11-02 20:16 - 2022-11-02 20:16 - 000003858 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-11-02 20:16 - 2022-11-02 20:16 - 000003654 _____ C:\Windows\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-11-02 20:16 - 2022-07-14 00:32 - 000060112 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvhci.sys 2022-10-30 16:34 - 2022-10-30 16:34 - 000000925 _____ C:\Users\etien\Downloads\hoglinfarm.schem 2022-10-28 16:48 - 2022-10-28 16:48 - 000002513 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Illustrator 2023.lnk 2022-10-28 16:45 - 2022-10-28 16:45 - 000001076 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop 2023.lnk 2022-10-28 16:40 - 2022-10-28 16:40 - 000000000 ___RD C:\Users\etien\Creative Cloud Files 2022-10-28 16:33 - 2022-10-28 16:33 - 000001404 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk 2022-10-28 16:33 - 2022-10-28 16:33 - 000001374 _____ C:\Users\Public\Desktop\Adobe Creative Cloud.lnk 2022-10-28 15:49 - 2022-10-28 15:49 - 000101380 _____ C:\ProgramData\agent.update.1666968592.bdinstall.v2.bin 2022-10-26 17:19 - 2022-10-26 17:19 - 000000000 ____D C:\Program Files (x86)\Windows Kits 2022-10-26 17:19 - 2022-10-26 17:19 - 000000000 ____D C:\Program Files (x86)\Microsoft GameInput 2022-10-24 12:42 - 2022-10-24 12:42 - 000000000 ____D C:\Users\etien\AppData\Roaming\Blender Foundation 2022-10-24 12:41 - 2022-10-24 12:41 - 000000000 ____D C:\Users\etien\.thumbnails 2022-10-24 12:40 - 2022-10-24 12:40 - 000001326 _____ C:\Users\etien\Desktop\Blender.lnk 2022-10-24 12:40 - 2022-10-24 12:40 - 000000000 ____D C:\Users\etien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\blender 2022-10-24 12:40 - 2022-10-24 12:40 - 000000000 ____D C:\Program Files\Blender Foundation 2022-10-24 12:39 - 2022-10-24 12:39 - 241926144 _____ C:\Users\etien\Downloads\blender-3.3.1-windows-x64.msi 2022-10-23 16:52 - 2022-10-23 16:52 - 000043371 _____ C:\Users\etien\Downloads\boosted-brightness-2.1.21.19.jar 2022-10-21 13:01 - 2022-10-21 13:01 - 000000898 _____ C:\Users\Public\Desktop\Call of Duty.lnk 2022-10-21 13:01 - 2022-10-21 13:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Call of Duty 2022-10-19 22:19 - 2022-10-19 22:19 - 000000000 ____D C:\Users\etien\AppData\LocalLow\IronGate 2022-10-18 15:32 - 2022-10-18 15:32 - 000002246 _____ C:\Users\etien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navigation privée de Firefox.lnk 2022-10-17 23:05 - 2022-10-17 23:05 - 006847903 _____ C:\Users\etien\Downloads\OptiFine_1.19_HD_U_H9.jar 2022-10-17 22:59 - 2022-10-17 22:59 - 000000000 ____D C:\Users\etien\curseforge 2022-10-17 22:58 - 2022-11-18 19:14 - 000002329 _____ C:\Users\etien\Desktop\CurseForge.lnk 2022-10-17 22:58 - 2022-10-17 22:58 - 001508040 _____ (Overwolf Ltd.) C:\Users\etien\Downloads\CurseForge - Installer.exe 2022-10-17 22:53 - 2022-10-17 22:53 - 006863178 _____ C:\Users\etien\Downloads\OptiFine_1.19.2_HD_U_H9.jar 2022-10-17 21:08 - 2022-10-17 21:22 - 000000000 ____D C:\Users\etien\AppData\Local\PokerStars.FR 2022-10-17 21:08 - 2022-10-17 21:08 - 002343880 _____ (Rational Intellectual Holdings Ltd.) C:\Users\etien\Downloads\PokerStarsInstallFR.exe 2022-10-17 21:08 - 2022-10-17 21:08 - 000000811 _____ C:\Users\Public\Desktop\PokerStars.fr.lnk 2022-10-17 21:08 - 2022-10-17 21:08 - 000000811 _____ C:\ProgramData\Microsoft\Windows\Start Menu\PokerStars.fr.lnk 2022-10-17 21:08 - 2022-10-17 21:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PokerStars.fr 2022-10-16 21:21 - 2022-10-07 04:01 - 000129000 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2022-10-16 21:21 - 2022-10-07 04:01 - 000041984 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhdap64.dll 2022-10-14 18:09 - 2022-10-14 18:09 - 002260480 _____ C:\Windows\system32\TextInputMethodFormatter.dll 2022-10-14 18:09 - 2022-10-14 18:09 - 001333760 _____ C:\Windows\SysWOW64\TextInputMethodFormatter.dll 2022-10-14 18:09 - 2022-10-14 18:09 - 000060928 _____ C:\Windows\system32\runexehelper.exe 2022-10-14 18:09 - 2022-10-14 18:09 - 000048640 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2022-10-14 18:09 - 2022-10-14 18:09 - 000039936 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2022-10-14 18:04 - 2022-10-14 18:04 - 000000451 _____ C:\Users\Public\Desktop\Overwatch.lnk 2022-10-14 18:04 - 2022-10-14 18:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Overwatch 2022-10-06 17:39 - 2022-10-06 17:39 - 000016077 _____ C:\Users\etien\Downloads\declaration_patient_positif_2022-10-06-1.pdf 2022-10-06 17:38 - 2022-10-06 17:38 - 000015888 _____ C:\Users\etien\Downloads\declaration_patient_positif_2022-09-22.pdf 2022-10-06 17:37 - 2022-10-06 17:37 - 000016077 _____ C:\Users\etien\Downloads\declaration_patient_positif_2022-10-06.pdf 2022-10-04 17:11 - 2022-10-04 17:11 - 005118384 _____ (Bitdefender S.R.L. Bucharest, ROMANIA) C:\Windows\system32\Drivers\atc.sys 2022-09-27 17:58 - 2022-07-15 17:59 - 000059368 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2022-09-26 19:06 - 2022-11-19 14:43 - 000002372 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk 2022-09-26 19:06 - 2022-11-19 14:43 - 000002331 _____ C:\Users\Public\Desktop\Brave.lnk 2022-09-26 19:06 - 2022-09-26 19:06 - 001211536 _____ (BraveSoftware Inc.) C:\Users\etien\Downloads\BraveBrowserSetup.exe 2022-09-26 19:06 - 2022-09-26 19:06 - 000003688 _____ C:\Windows\system32\Tasks\BraveSoftwareUpdateTaskMachineUA{A439240D-423F-4B35-9E8D-33E07BA5FA46} 2022-09-26 19:06 - 2022-09-26 19:06 - 000003564 _____ C:\Windows\system32\Tasks\BraveSoftwareUpdateTaskMachineCore{C9C0DB56-B264-459B-8790-7F91F23A2369} 2022-09-26 19:06 - 2022-09-26 19:06 - 000000000 ____D C:\Users\etien\AppData\Local\BraveSoftware 2022-09-26 19:06 - 2022-09-26 19:06 - 000000000 ____D C:\Program Files\BraveSoftware 2022-09-26 19:06 - 2022-09-26 19:06 - 000000000 ____D C:\Program Files (x86)\BraveSoftware 2022-09-26 16:29 - 2022-09-26 16:30 - 000000000 ____D C:\Users\etien\AppData\Roaming\Mindustry 2022-09-26 16:29 - 2022-09-26 16:29 - 101322853 _____ C:\Users\etien\Downloads\mindustry-windows-64-bit.zip 2022-09-24 20:49 - 2022-10-21 15:36 - 000000000 ____D C:\Users\etien\Documents\Call of Duty 2022-09-24 20:49 - 2022-10-21 15:35 - 000000000 ____D C:\Users\etien\AppData\Local\Activision 2022-09-24 20:17 - 2022-09-24 20:17 - 000000938 _____ C:\Users\Public\Desktop\Call of Duty Modern Warfare II Beta.lnk 2022-09-24 20:17 - 2022-09-24 20:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Call of Duty Modern Warfare II Beta 2022-09-24 20:03 - 2022-09-24 20:03 - 000000000 ____D C:\ProgramData\Battle.net_components 2022-09-24 20:02 - 2022-11-17 21:07 - 000000000 ____D C:\Program Files (x86)\Call of Duty 2022-09-24 13:30 - 2022-09-24 13:30 - 000000000 ____D C:\Users\etien\AppData\Local\Sifu 2022-09-23 15:48 - 2022-09-23 15:48 - 000000330 _____ C:\Users\etien\Desktop\Sifu.url 2022-09-23 09:45 - 2022-09-23 09:45 - 000006822 _____ C:\Users\etien\AppData\Local\2476191251 2022-09-23 09:45 - 2022-09-23 09:45 - 000000000 ____D C:\Users\etien\AppData\Local\Arkane Studios 2022-09-23 09:38 - 2022-09-23 09:38 - 001274296 _____ (BitDefender S.R.L. Bucharest, ROMANIA) C:\Windows\system32\Drivers\gemma.sys 2022-09-22 19:33 - 2022-09-22 19:33 - 000015888 _____ C:\Users\etien\Desktop\declaration_patient_positif_2022-09-22.pdf 2022-09-19 20:35 - 2022-09-19 20:35 - 000000219 _____ C:\Users\etien\Desktop\Left 4 Dead 2.url 2022-09-19 20:32 - 2022-09-19 20:32 - 000000000 ____D C:\Users\etien\AppData\LocalLow\Mediatonic 2022-09-19 20:32 - 2022-09-19 20:32 - 000000000 ____D C:\Users\etien\AppData\Local\EOSUserHelper 2022-09-19 20:31 - 2022-09-19 20:31 - 000000341 _____ C:\Users\etien\Desktop\Fall Guys.url 2022-09-17 17:16 - 2022-09-17 17:17 - 000000000 ____D C:\Users\etien\Documents\Assassin's Creed Odyssey 2022-09-17 16:34 - 2022-09-17 16:34 - 000000234 _____ C:\Users\etien\Desktop\Assassin's Creed Odyssey.url 2022-09-17 16:05 - 2022-09-17 16:05 - 000000000 ____D C:\Users\etien\AppData\Roaming\Vampire_Survivors_Data 2022-09-16 23:42 - 2022-09-16 23:42 - 000413696 _____ C:\Windows\system32\AzureCheck.dll 2022-09-16 23:42 - 2022-09-16 23:42 - 000098816 _____ C:\Windows\system32\Drivers\cimfs.sys 2022-09-10 13:50 - 2022-10-21 01:52 - 000000408 _____ C:\ProgramData\droidcam-settings 2022-09-10 13:43 - 2022-09-10 13:43 - 000000000 ____D C:\Users\etien\.android 2022-09-10 13:42 - 2022-10-21 01:52 - 000000804 _____ C:\ProgramData\droidcam-client-options-v2 2022-09-10 13:39 - 2022-09-10 13:39 - 016408456 _____ C:\Users\etien\Downloads\DroidCam.Setup.6.5.2.exe 2022-09-10 13:39 - 2022-09-10 13:39 - 000001097 _____ C:\Users\etien\Desktop\DroidCamApp.lnk 2022-09-10 13:39 - 2022-09-10 13:39 - 000000000 ____D C:\Users\etien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DroidCam 2022-09-10 13:39 - 2022-09-10 13:39 - 000000000 ____D C:\Program Files (x86)\DroidCam 2022-09-05 22:18 - 2022-09-05 22:18 - 000239544 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys 2022-09-05 22:18 - 2022-09-05 22:18 - 000158640 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys 2022-09-05 22:18 - 2022-09-05 22:18 - 000021480 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamElam.sys 2022-09-05 22:18 - 2022-09-05 22:18 - 000002041 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2022-09-05 22:18 - 2022-09-05 22:18 - 000002029 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2022-09-05 22:18 - 2022-09-05 22:18 - 000000000 ____D C:\ProgramData\Malwarebytes 2022-09-05 22:18 - 2022-09-05 22:18 - 000000000 ____D C:\Program Files\Malwarebytes 2022-09-05 22:17 - 2022-09-05 22:17 - 002556344 _____ (Malwarebytes) C:\Users\etien\Downloads\MBSetup(2).exe 2022-09-05 22:15 - 2022-09-05 22:15 - 002556344 _____ (Malwarebytes) C:\Users\etien\Downloads\MBSetup(1).exe 2022-09-04 13:59 - 2022-09-04 14:01 - 000000000 ____D C:\Users\Public\Documents\AdobeGCInfo 2022-09-04 13:44 - 2022-09-04 14:34 - 000000000 ____D C:\Users\etien\Downloads\Master.Collection.2020 2022-09-04 13:42 - 2022-09-04 13:42 - 000051688 _____ C:\Users\etien\Downloads\adobe-master-collection-2020.torrent 2022-09-01 21:32 - 2022-09-01 21:32 - 001279688 _____ (ALCPU ) C:\Users\etien\Downloads\Core-Temp-setup.exe 2022-09-01 21:32 - 2022-09-01 21:32 - 000000989 _____ C:\Users\etien\Desktop\Core Temp.lnk 2022-09-01 21:32 - 2022-09-01 21:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Core Temp 2022-09-01 21:32 - 2022-09-01 21:32 - 000000000 ____D C:\Program Files\Core Temp 2022-08-30 18:34 - 2022-08-30 18:34 - 000480184 _____ (Bitdefender) C:\Windows\system32\Drivers\vlflt.sys 2022-08-27 11:20 - 2022-09-04 21:13 - 000000000 ____D C:\Users\etien\AppData\Roaming\uTorrent Web 2022-08-27 11:20 - 2022-09-04 14:54 - 000000000 ____D C:\Users\etien\AppData\Local\BitTorrentHelper 2022-08-27 11:20 - 2022-08-27 12:21 - 000000000 ____D C:\Users\etien\Downloads\[ OxTorrent.com ] Nekfeu - Les étoiles vagabondes (2019) Deluxe 2022-08-27 11:20 - 2022-08-27 11:20 - 000001869 _____ C:\Users\etien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent Web.lnk 2022-08-27 11:20 - 2022-08-27 11:20 - 000000000 ____D C:\ProgramData\McAfee 2022-08-27 11:20 - 2022-08-27 11:20 - 000000000 ____D C:\Program Files\McAfee 2022-08-27 11:16 - 2022-08-27 11:16 - 000050696 _____ C:\Users\etien\Downloads\[ OxTorrent.ac ] Nekfeu - Les étoiles vagabondes (Deluxe) 2019.torrent 2022-08-26 17:16 - 2022-08-26 17:16 - 000234552 _____ C:\ProgramData\vpn.1661530584.bdinstall.v2.bin 2022-08-26 17:16 - 2022-08-26 17:16 - 000085340 _____ C:\ProgramData\vpn.uninstall.1661530584.bdinstall.v2.bin 2022-08-26 17:16 - 2022-08-26 17:16 - 000002205 _____ C:\Users\Public\Desktop\Bitdefender VPN.lnk 2022-08-26 17:16 - 2022-08-26 17:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender VPN 2022-08-21 14:46 - 2022-08-21 14:46 - 000000000 ____D C:\Users\etien\AppData\Local\Myst 2022-08-21 13:59 - 2022-08-21 13:59 - 000000000 ____D C:\ProgramData\Hydra Windows SDK ==================== Trois mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-11-19 16:39 - 2022-02-08 21:24 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2022-11-19 16:39 - 2021-06-29 17:17 - 000000000 ____D C:\Users\etien\AppData\Roaming\discord 2022-11-19 16:38 - 2021-06-29 17:17 - 000000000 ____D C:\Users\etien\AppData\Local\Discord 2022-11-19 16:38 - 2021-06-26 09:55 - 000000000 ____D C:\Users\etien\AppData\LocalLow\Mozilla 2022-11-19 16:37 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-11-19 16:31 - 2021-07-24 13:52 - 000000000 ____D C:\Program Files (x86)\Google 2022-11-19 15:13 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness 2022-11-19 14:50 - 2021-06-26 09:38 - 001681370 _____ C:\Windows\system32\PerfStringBackup.INI 2022-11-19 14:50 - 2019-12-07 15:50 - 000755174 _____ C:\Windows\system32\perfh00C.dat 2022-11-19 14:50 - 2019-12-07 15:50 - 000141980 _____ C:\Windows\system32\perfc00C.dat 2022-11-19 14:50 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF 2022-11-19 14:47 - 2021-11-15 18:50 - 000000000 ____D C:\ProgramData\NVIDIA 2022-11-19 14:47 - 2021-07-06 18:09 - 000000000 ____D C:\Program Files\CCleaner 2022-11-19 14:44 - 2021-10-19 16:49 - 000000000 ____D C:\Users\etien\Desktop\screen 2022-11-19 14:43 - 2022-02-10 18:10 - 000000000 ____D C:\Program Files\Microsoft OneDrive 2022-11-19 14:43 - 2021-08-10 16:54 - 000000000 ____D C:\Program Files\TeamViewer 2022-11-19 14:43 - 2021-07-24 13:53 - 000002245 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2022-11-19 14:43 - 2021-07-24 13:53 - 000002204 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2022-11-19 14:43 - 2021-06-26 09:55 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2022-11-19 14:43 - 2021-06-26 09:30 - 000008192 ___SH C:\DumpStack.log.tmp 2022-11-19 14:43 - 2021-06-26 09:30 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-11-19 14:43 - 2021-06-26 09:30 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2022-11-19 14:43 - 2019-12-07 10:03 - 000131072 _____ C:\Windows\system32\config\ELAM 2022-11-19 04:34 - 2021-06-26 09:33 - 000000000 ____D C:\Users\etien 2022-11-19 04:34 - 2019-12-07 10:03 - 000524288 _____ C:\Windows\system32\config\BBI 2022-11-19 04:33 - 2021-06-26 11:11 - 000000000 ____D C:\Program Files (x86)\Steam 2022-11-19 03:43 - 2022-07-07 19:56 - 000000000 ____D C:\Users\etien\AppData\Local\OGH 2022-11-19 03:43 - 2022-07-07 19:56 - 000000000 ____D C:\Program Files\HP 2022-11-19 03:42 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2022-11-19 02:55 - 2021-06-26 10:57 - 000000000 ____D C:\Users\etien\AppData\Local\Battle.net 2022-11-19 02:50 - 2021-07-05 17:19 - 000000000 ____D C:\Users\etien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2022-11-18 23:15 - 2021-06-26 09:30 - 000000000 ____D C:\Windows\system32\SleepStudy 2022-11-18 21:35 - 2021-06-26 14:14 - 000000000 ____D C:\Users\etien\AppData\Local\ElevatedDiagnostics 2022-11-18 20:58 - 2021-06-26 11:30 - 000000000 ____D C:\Users\etien\AppData\Local\Ubisoft Game Launcher 2022-11-18 20:57 - 2021-06-28 17:57 - 000000000 ____D C:\Users\etien\AppData\Roaming\HearthstoneDeckTracker 2022-11-18 19:14 - 2022-05-23 18:07 - 000002329 _____ C:\Users\etien\Desktop\Firestone.lnk 2022-11-18 19:14 - 2022-05-23 18:05 - 000000000 ____D C:\Users\etien\AppData\Local\Overwolf 2022-11-18 17:44 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\CbsTemp 2022-11-17 20:17 - 2021-10-09 12:53 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla 2022-11-17 20:17 - 2021-06-26 09:55 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2022-11-17 20:17 - 2021-06-26 09:55 - 000000993 _____ C:\Users\Public\Desktop\Firefox.lnk 2022-11-16 20:27 - 2021-06-26 15:18 - 000000000 ____D C:\Users\etien\AppData\Local\NVIDIA 2022-11-16 18:13 - 2022-02-07 19:33 - 000000000 ____D C:\Program Files\Microsoft Office 2022-11-15 18:11 - 2021-12-13 00:01 - 000003596 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2357618718-3798865684-1663513560-1001 2022-11-14 22:30 - 2021-06-28 17:57 - 000000000 ____D C:\Users\etien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HearthSim 2022-11-14 22:30 - 2021-06-28 17:57 - 000000000 ____D C:\Users\etien\AppData\Local\SquirrelTemp 2022-11-14 22:30 - 2021-06-28 17:57 - 000000000 ____D C:\Users\etien\AppData\Local\HearthstoneDeckTracker 2022-11-14 20:27 - 2021-07-05 18:28 - 000000000 ____D C:\Users\etien\AppData\Roaming\.minecraft 2022-11-13 14:58 - 2022-05-23 18:07 - 000000000 ____D C:\Program Files (x86)\Overwolf 2022-11-12 12:06 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\NDF 2022-11-12 11:19 - 2021-06-26 09:30 - 000636024 _____ C:\Windows\system32\FNTCACHE.DAT 2022-11-12 03:26 - 2019-12-07 15:53 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2022-11-12 03:26 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\system32\UNP 2022-11-12 03:26 - 2019-12-07 10:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel 2022-11-12 03:26 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\Dism 2022-11-12 03:26 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SystemResources 2022-11-12 03:26 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\oobe 2022-11-12 03:26 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\Dism 2022-11-12 03:26 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\bcastdvr 2022-11-12 01:55 - 2021-06-26 09:30 - 000003690 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-11-12 01:55 - 2021-06-26 09:30 - 000003566 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2022-11-11 15:53 - 2021-06-26 09:34 - 000000000 ____D C:\Users\etien\AppData\Local\D3DSCache 2022-11-11 15:51 - 2021-06-26 09:32 - 003014656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll 2022-11-11 15:41 - 2021-06-26 09:42 - 000000000 ____D C:\Windows\system32\MRT 2022-11-11 15:39 - 2021-06-26 09:42 - 146960040 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2022-11-11 03:26 - 2021-06-26 10:58 - 000000000 ____D C:\Users\etien\AppData\Local\CrashDumps 2022-11-10 23:12 - 2021-06-27 11:12 - 000000000 ____D C:\Program Files (x86)\Hearthstone 2022-11-06 12:34 - 2021-06-26 09:34 - 000000000 ____D C:\Users\etien\AppData\Local\Packages 2022-11-06 12:33 - 2021-08-10 16:54 - 000000000 ____D C:\Users\etien\AppData\Roaming\TeamViewer 2022-11-06 12:31 - 2021-07-05 19:30 - 000000000 ____D C:\Program Files\EA Games 2022-11-06 11:37 - 2021-06-26 10:31 - 000000000 ____D C:\Users\etien\AppData\Local\NVIDIA Corporation 2022-11-05 18:16 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\LiveKernelReports 2022-11-02 20:17 - 2021-11-15 18:51 - 000001447 _____ C:\Users\Public\Desktop\GeForce Experience.lnk 2022-11-02 20:17 - 2021-11-15 18:51 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2022-11-02 20:16 - 2021-11-15 18:51 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2022-11-02 20:16 - 2021-06-26 09:40 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2022-10-28 17:12 - 2022-08-09 12:54 - 000000000 ____D C:\Users\etien\AppData\Roaming\deezer-desktop 2022-10-28 16:54 - 2021-06-26 09:34 - 000000000 ____D C:\Users\etien\AppData\Roaming\Adobe 2022-10-28 16:48 - 2021-07-07 20:19 - 000000000 ____D C:\Program Files\Common Files\Adobe 2022-10-28 16:46 - 2021-07-07 20:19 - 000000000 ____D C:\Program Files\Adobe 2022-10-28 16:43 - 2021-07-07 20:19 - 000000000 ____D C:\ProgramData\Adobe 2022-10-28 16:35 - 2021-07-07 20:23 - 000000000 __RHD C:\Users\etien\Creative Cloud Files camille.fedon@gmail.com 127888f228a3a89e5e7406bfb62361db574d23be1080652a6ccc0ae9b82c7b0f 2022-10-28 16:35 - 2021-07-07 20:19 - 000000000 ____D C:\Program Files (x86)\Adobe 2022-10-28 16:35 - 2021-07-07 20:15 - 000000000 ____D C:\Users\etien\AppData\Local\Adobe 2022-10-28 16:31 - 2021-07-26 16:21 - 000000000 ____D C:\Users\etien\AppData\Roaming\com.adobe.dunamis 2022-10-28 16:28 - 2022-02-15 15:47 - 000002392 _____ C:\Users\etien\Desktop\Personne 1 - Chrome.lnk 2022-10-28 15:50 - 2022-08-14 01:38 - 000003846 _____ C:\Windows\system32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 2022-10-28 15:50 - 2022-08-14 01:36 - 000000000 ____D C:\Program Files\Bitdefender Agent 2022-10-26 17:18 - 2021-11-22 23:02 - 000153048 _____ (Microsoft Corporation) C:\Windows\system32\gamelaunchhelper.dll 2022-10-26 17:18 - 2021-07-05 19:08 - 002815456 _____ (Microsoft Corporation) C:\Windows\system32\xgameruntime.dll 2022-10-26 17:18 - 2021-07-05 19:08 - 000452048 _____ (Microsoft Corporation) C:\Windows\system32\gameplatformservices.dll 2022-10-26 17:18 - 2021-07-05 19:08 - 000198096 _____ (Microsoft Corporation) C:\Windows\system32\gameconfighelper.dll 2022-10-26 17:18 - 2021-07-05 19:08 - 000131072 _____ (Microsoft Corporation) C:\Windows\system32\gamingtcuihelpers.dll 2022-10-24 15:32 - 2021-07-08 17:40 - 000000000 ____D C:\Users\etien\Desktop\-SuuperPouet- 2022-10-22 00:20 - 2021-06-29 17:17 - 000002231 _____ C:\Users\etien\Desktop\Discord.lnk 2022-10-21 13:30 - 2022-03-28 23:09 - 000000000 ____D C:\Users\etien\AppData\Roaming\Vampire_Survivors 2022-10-20 23:07 - 2022-03-19 21:05 - 000000000 ____D C:\Users\etien\AppData\Roaming\molotov ==================== Fichiers à la racine de certains dossiers ======== 2022-02-23 02:42 - 2022-02-23 02:42 - 000000016 _____ () C:\Users\etien\AppData\Roaming\obs-virtualcam.txt 2021-11-27 02:32 - 2021-11-27 02:33 - 000007481 _____ () C:\Users\etien\AppData\Roaming\VoiceMeeterDefault.xml 2022-09-23 09:45 - 2022-09-23 09:45 - 000006822 _____ () C:\Users\etien\AppData\Local\2476191251 2022-08-06 14:08 - 2022-08-06 14:08 - 000003822 _____ () C:\Users\etien\AppData\Local\579062154 2021-07-08 14:55 - 2022-09-04 14:01 - 000000205 _____ () C:\Users\etien\AppData\Local\oobelibMkey.log 2021-06-27 12:38 - 2022-09-01 20:26 - 000007602 _____ () C:\Users\etien\AppData\Local\Resmon.ResmonCfg ==================== SigCheckExt ========================= 2021-07-05 19:08 - 2022-10-26 17:18 - 000131072 _____ (Microsoft Corporation) C:\Windows\system32\gamingtcuihelpers.dll 2022-03-12 00:24 - 2011-12-14 20:21 - 000086016 _____ C:\Windows\SysWOW64\SYNSOPOS.exe 2021-12-17 19:08 - 2021-12-17 19:08 - 000003812 _____ C:\Windows\system32\Tasks\Microsoft_MKC_Logon_Task_ceip.exe 2021-12-17 19:08 - 2021-12-17 19:08 - 000003210 _____ C:\Windows\system32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe 2021-12-17 19:08 - 2021-12-17 19:08 - 000003206 _____ C:\Windows\system32\Tasks\Microsoft_MKC_Logon_Task_itype.exe 2022-11-19 17:16 - 2022-11-19 17:16 - 002375680 _____ (Farbar) C:\Users\etien\Desktop\FRST64.exe 2022-01-07 20:19 - 2022-01-07 20:19 - 000864317 _____ C:\Users\etien\Downloads\autoclicker-1-0-0-2.exe 2022-11-18 21:28 - 2022-11-18 21:28 - 186241390 _____ (OhMyGuus) C:\Users\etien\Downloads\Better-CrewLink-Setup-3.0.5.exe 2021-07-19 18:12 - 2021-07-19 18:26 - 571943936 _____ () C:\Users\etien\Downloads\Floo Network Installer.exe 2021-12-17 18:51 - 2021-12-17 18:51 - 001786477 _____ (GoldSolution Software, Inc. ) C:\Users\etien\Downloads\MyMacros.exe 2021-12-17 18:58 - 2021-12-17 18:58 - 011200520 _____ (Pitrinec Software ) C:\Users\etien\Downloads\pk_free.exe 2022-02-11 23:55 - 2022-02-11 23:56 - 006948199 _____ () C:\Users\etien\Downloads\TechnicLauncher.exe 2022-01-27 20:55 - 2022-01-27 20:55 - 008369755 _____ (UserBenchmark.com) C:\Users\etien\Downloads\UserBenchMark.exe 2022-11-19 16:42 - 2022-11-19 16:42 - 003509960 _____ (Nicolas Coolman) C:\Users\etien\Downloads\ZHPSuite.exe ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== BCD ================================ Gestionnaire de d‚marrage Windows --------------------------------- identificateur {bootmgr} device partition=C: description Windows Boot Manager locale fr-FR inherit {globalsettings} default {current} resumeobject {cde09c8d-d660-11eb-abb0-c1efe89f366b} displayorder {current} toolsdisplayorder {memdiag} timeout 30 Chargeur de d‚marrage Windows ----------------------------- identificateur {current} device partition=C: path \Windows\system32\winload.exe description Windows 10 locale fr-FR inherit {bootloadersettings} recoverysequence {cde09c8f-d660-11eb-abb0-c1efe89f366b} displaymessageoverride Recovery recoveryenabled Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \Windows resumeobject {cde09c8d-d660-11eb-abb0-c1efe89f366b} nx OptIn bootmenupolicy Standard Chargeur de d‚marrage Windows ----------------------------- identificateur {cde09c8f-d660-11eb-abb0-c1efe89f366b} device ramdisk=[C:]\Recovery\WindowsRE\Winre.wim,{cde09c90-d660-11eb-abb0-c1efe89f366b} path \windows\system32\winload.exe description Windows Recovery Environment locale fr-fr inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[C:]\Recovery\WindowsRE\Winre.wim,{cde09c90-d660-11eb-abb0-c1efe89f366b} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Reprendre … partir de la mise en veille prolong‚e ------------------------------------------------- identificateur {cde09c8d-d660-11eb-abb0-c1efe89f366b} device partition=C: path \Windows\system32\winresume.exe description Windows Resume Application locale fr-FR inherit {resumeloadersettings} recoverysequence {cde09c8f-d660-11eb-abb0-c1efe89f366b} recoveryenabled Yes allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Testeur de m‚moire Windows -------------------------- identificateur {memdiag} device partition=C: path \boot\memtest.exe description Diagnostics m‚moire Windows locale fr-FR inherit {globalsettings} badmemoryaccess Yes ParamŠtres EMS -------------- identificateur {emssettings} bootems No ParamŠtres du d‚bogueur ----------------------- identificateur {dbgsettings} debugtype Local Erreurs de m‚moire RAM ---------------------- identificateur {badmemory} ParamŠtres globaux ------------------ identificateur {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} ParamŠtres du chargeur de d‚marrage ----------------------------------- identificateur {bootloadersettings} inherit {globalsettings} {hypervisorsettings} ParamŠtres de l'hyperviseur ------------------- identificateur {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 ParamŠtres du chargeur de reprise --------------------------------- identificateur {resumeloadersettings} inherit {globalsettings} Options de p‚riph‚rique ----------------------- identificateur {cde09c90-d660-11eb-abb0-c1efe89f366b} description Windows Recovery ramdisksdidevice partition=C: ramdisksdipath \Recovery\WindowsRE\boot.sdi ==================== Fin de FRST.txt ========================