Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 20-01-2023 Exécuté par SYU (administrateur) sur JB (HP HP Pavilion Gaming Laptop 15-ec2xxx) (22-01-2023 12:53:50) Exécuté depuis C:\Users\SYU\Desktop Profils chargés: SYU Plate-forme: Microsoft Windows 11 Famille Version 22H2 22623.891 (X64) Langue: Français (France) Navigateur par défaut: Brave Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.133\BraveCrashHandler.exe (Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.133\BraveCrashHandler64.exe (C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHOST.exe (C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\ModuleCore\ProtectedModuleHost.exe (C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\MfeAV\MfeAVSvc.exe (C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe ->) (MUSARUBRA US LLC -> McAfee LLC.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe (C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe ->) (MUSARUBRA US LLC -> McAfee, LLC) C:\Windows\System32\mfevtps.exe (C:\Program Files\McAfee\WebAdvisor\servicehost.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe (C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_422.33900.0.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\109.0.1518.61\msedgewebview2.exe <6> (McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_970b3aa928c32e35\x64\TouchpointAnalyticsClientService.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_9b42a3e82673e3bb\x64\AppHelperCap.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_9b42a3e82673e3bb\x64\DiagsCap.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_9b42a3e82673e3bb\x64\NetworkCap.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_9b42a3e82673e3bb\x64\SysInfoCap.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpomencustomcapcomp.inf_amd64_a1ba1c52244db36a\x64\OmenCap\OmenCap.exe (services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\CSP\5.4.105.0\McCSPServiceHost.exe (services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe <3> (services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\PEF\CORE\PEFService.exe (services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\VSCore_22_7\mcapexe.exe (services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft GameInput\x64\gameinputsvc.exe <2> (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_8.71.12001.0_x64__8wekyb3d8bbwe\gamingservices.exe (services.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_8.71.12001.0_x64__8wekyb3d8bbwe\gamingservicesnet.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\System32\Sgrm\SgrmBroker.exe (services.exe ->) (MUSARUBRA US LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvhmi.inf_amd64_85fb950577102ec1\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_1c0a31316508effa\RtkAudUService64.exe (svchost.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\MQS\QcShm.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\SDXHelper.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneMusic_11.2211.36.0_x64__8wekyb3d8bbwe\Microsoft.Media.Player.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe (svchost.exe ->) (WhatsApp Inc.) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2301.4.0_x64__cv1g1gvanyjgm\WhatsApp.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_1c0a31316508effa\RtkAudUService64.exe [1596800 2022-09-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM-x32\...\Run: [ExpressVPNNotificationService] => C:\Program Files (x86)\ExpressVPN\expressvpn-ui\ExpressVPNNotificationServiceStarter.exe [373600 2021-01-18] (Express Vpn LLC -> ExpressVPN) HKLM-x32\...\Run: [Lightshot] => C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe [226728 2019-07-21] (Kilonova LLC -> ) HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION HKU\S-1-5-19\...\Run: [OneDriveSetup] => C:\Windows\System32\OneDriveSetup.exe [50312608 2022-05-07] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-20\...\Run: [OneDriveSetup] => C:\Windows\System32\OneDriveSetup.exe [50312608 2022-05-07] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3260349332-2736728831-3187818672-1001\...\Run: [MicrosoftEdgeAutoLaunch_3542F0B3C2763F5D8052F5BF8BE10B07] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4188616 2023-01-19] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3260349332-2736728831-3187818672-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4246376 2022-12-15] (Valve Corp. -> Valve Corporation) HKU\S-1-5-21-3260349332-2736728831-3187818672-1001\...\Run: [com.evernote.Evernote] => C:\Users\SYU\AppData\Local\Programs\Evernote\Evernote.exe [149083712 2022-12-10] (Evernote Corporation -> Evernote Corporation) HKU\S-1-5-21-3260349332-2736728831-3187818672-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [38935376 2023-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\109.0.5414.75\Installer\chrmstp.exe [2023-01-22] (Google LLC -> Google LLC) HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\109.1.47.171\Installer\chrmstp.exe [2023-01-12] (Brave Software, Inc. -> Brave Software, Inc.) ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {0BF093B8-7410-49E1-ACD6-003240A3F142} - System32\Tasks\CCleanerSkipUAC - SYU => C:\Program Files\CCleaner\CCleaner.exe [32617808 2023-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) Task: {0D6B5B62-9650-423E-B015-9D30A8E26817} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2023-01-22] (Google Inc -> Google LLC) Task: {10A6A267-8707-4B39-96D5-08429F7E0BCA} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26326520 2023-01-14] (Microsoft Corporation -> Microsoft Corporation) Task: {11E2F412-0250-43F4-984A-BA8CC5A622AB} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [903024 2021-08-03] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log Task: {16B24C94-2620-45EF-B6EA-727B63A480AC} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [903024 2021-08-03] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {1E55F50D-1480-4BE7-AD81-D2B36CC4D19A} - System32\Tasks\HP\Consent Manager Launcher => sc start hptouchpointanalyticsservice Task: {3FB3D76D-CA2F-46C1-A7AB-F88B78FC5577} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3339120 2021-08-03] (NVIDIA Corporation -> NVIDIA Corporation) Task: {4DA69958-63BF-4642-AE45-A9F6019FEFF1} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => %windir%\system32\sc.exe start InventorySvc Task: {56B21A26-9507-4CED-BA8D-E4E7ED708947} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905072 2021-08-03] (NVIDIA Corporation -> NVIDIA Corporation) Task: {59959272-1761-4528-B6DA-28CD4379A8E4} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore{7939D69E-2861-4D56-AE2C-995C7E9A5329} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [174968 2022-12-06] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {6151C15A-F7F2-4D9E-8D2F-9CF1BA2DFFE4} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1149464 2023-01-10] (HP Inc. -> HP Inc.) Task: {684C1EA9-B102-44B9-A967-D084BF0ADF2D} - System32\Tasks\McAfee\McAfee DAT Built in test => C:\Program Files\Common Files\McAfee\AMContent\scanners\x86_64\datrep\1.0.12.663\mcdatrep.exe [1889696 2020-12-09] (McAfee, Inc. -> McAfee, LLC.) Task: {76B1E092-9382-4535-BA11-04786C589075} - System32\Tasks\McAfee\McAfee Auto Maintenance Task Agent => {ABCECA3B-EA5A-496B-A021-5C6BAB365E5C} C:\Program Files\Common Files\McAfee\TaskScheduler\McAMTaskAgent.exe [932376 2022-10-13] (McAfee, LLC -> McAfee, LLC) Task: {76C58A69-9FCC-4612-851F-7731D23E40F8} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA{2118A937-45C2-4D67-9606-20DF74DF2825} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [174968 2022-12-06] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {779BB5D4-0BD3-473A-999E-AB5FF396BD79} - System32\Tasks\SystemOptimizer => C:\Program Files\HP\SystemOptimizer\SystemOptimizer.exe [170480 2023-01-06] (HP Inc. -> HP Inc.) Task: {7B5320F5-68B7-490F-905C-B0192904EE8F} - System32\Tasks\McAfeeLogon => C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe [768288 2022-03-24] (McAfee, LLC -> McAfee, LLC) Task: {7DB3638C-E137-4BB9-947C-3A787856E11D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2023-01-22] (Google Inc -> Google LLC) Task: {80FC6F85-326A-41EB-9451-6D613835E760} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: ) Task: {820A6660-A3AA-4FED-B6B5-0A99C4408F14} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-08-03] (NVIDIA Corporation -> NVIDIA Corporation) Task: {83CC641A-DF3F-42C2-A7DE-BEDA00B1FB12} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144288 2023-01-14] (Microsoft Corporation -> Microsoft Corporation) Task: {9CE6030F-9FAA-4A75-860B-93282A85F47E} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-08-03] (NVIDIA Corporation -> NVIDIA Corporation) Task: {9DC9CABF-2B58-4E8C-B1FB-BEE8E7075595} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-08-03] (NVIDIA Corporation -> NVIDIA Corporation) Task: {9E1761BF-A958-4EB6-8DB9-C049239500EF} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPSFReport.exe [138328 2023-01-10] (HP Inc. -> HP Inc.) "C:\Windows\System32\Tasks\McAfee\McAfee Idle Detection Task" a été déverrouillé. <==== ATTENTION Task: {A7C335D1-0CA2-4276-9819-3F06C413C222} - System32\Tasks\McAfee\McAfee Idle Detection Task => {ABCDCA3B-DE6B-5A7C-B132-6D7CBA63E5C5} C:\Program Files\Common Files\McAfee\TaskScheduler\McAMTaskAgent.exe [932376 2022-10-13] (McAfee, LLC -> McAfee, LLC) Task: {AEE3F1BD-1456-4DC3-9217-490C4569A2EB} - System32\Tasks\update-S-1-5-21-3260349332-2736728831-3187818672-1001 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: ) Task: {B0469F30-EE4B-43B8-8052-B082FFAFDD5B} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => C:\WINDOWS\system32\MusNotification.exe (Pas de fichier) Task: {B675B545-E5AD-4BF8-ACC1-CBC510AF3201} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2023-01-11] (Piriform Software Ltd -> Piriform) Task: {C0A6110F-3BF3-4890-BA0C-A6B49CA2C724} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144288 2023-01-14] (Microsoft Corporation -> Microsoft Corporation) Task: {CE9C39B7-A588-432B-BC58-2C38DBC93B56} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [160696 2023-01-14] (Microsoft Corporation -> Microsoft Corporation) Task: {CF6A0937-BF68-4983-9F2A-62EF034F7674} - System32\Tasks\McAfee\DAD.Execute.Updates => C:\Program Files\Common Files\McAfee\DynamicAppDownloader\DADUpdater.exe [4092968 2022-09-08] (McAfee, LLC -> McAfee, LLC) Task: {DC7E1691-2F9E-41D8-A556-BB65B1475B2C} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905072 2021-08-03] (NVIDIA Corporation -> NVIDIA Corporation) Task: {DDF30C38-BCD3-45AD-8B16-17555C652520} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4713808 2023-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "d62ffcc5-22a6-4cad-88c1-65cfe23c42de" --version "6.08.10255" --silent Task: {DF69041B-E72B-40AF-980F-E21372CFF59C} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [645488 2021-08-03] (NVIDIA Corporation -> NVIDIA Corporation) Task: {E656FD31-C500-41FB-A83C-137343B5EDF7} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Update Notice => C:\Program Files (x86)\HP\HP Support Framework\Resources\BingPopup\BingPopup.exe [847392 2023-01-10] (HP Inc. -> HP Inc.) Task: {EEC96620-C8A5-4F07-A36A-E05A8BA0C29B} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1149464 2023-01-10] (HP Inc. -> HP Inc.) Task: {EF1F50F0-63DF-4C73-884A-1FF4BB615541} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26326520 2023-01-14] (Microsoft Corporation -> Microsoft Corporation) Task: {F258337D-7569-4F59-9328-4ACB167DF5C0} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-08-03] (NVIDIA Corporation -> NVIDIA Corporation) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe Task: C:\WINDOWS\Tasks\update-S-1-5-21-3260349332-2736728831-3187818672-1001.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe Task: C:\WINDOWS\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{1858365f-02ec-4f86-a67a-080de63f92b1}: [NameServer] 1.1.1.1,1.0.0.1 Tcpip\..\Interfaces\{2cd3fc36-f9af-4d47-9d61-7a90be2f63b6}: [NameServer] 1.1.1.1,1.0.0.1,192.168.0.254 Tcpip\..\Interfaces\{2cd3fc36-f9af-4d47-9d61-7a90be2f63b6}: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{4d63233b-c813-41f6-92e4-6a0155c508b4}: [NameServer] 1.1.1.1,1.0.0.1 Tcpip\..\Interfaces\{9cef0c7d-ae7a-4df3-9a50-e1032710931e}: [NameServer] 1.1.1.1,1.0.0.1 Tcpip\..\Interfaces\{c438fcbc-db66-4898-9400-06a722549673}: [NameServer] 1.1.1.1,1.0.0.1 Tcpip\..\Interfaces\{ed1919c4-fd48-4783-8d5a-4c85e8bfbcec}: [NameServer] 1.1.1.1,1.0.0.1 Tcpip\..\Interfaces\{fbba5fcb-81ca-44da-8d88-65bef4dd5195}: [NameServer] 1.1.1.1,1.0.0.1,192.168.0.254 Tcpip\..\Interfaces\{fbba5fcb-81ca-44da-8d88-65bef4dd5195}: [DhcpNameServer] 192.168.0.254 Edge: ======= Edge Profile: C:\Users\SYU\AppData\Local\Microsoft\Edge\User Data\Default [2023-01-22] FireFox: ======== FF HKLM\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSKHKLM => non trouvé(e) FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK FF Extension: (McAfee Anti-Spam Thunderbird Extension) - C:\Program Files\McAfee\MSK [2022-12-06] [] [non signé] FF Plugin: @mcafee.com/MSC,version=10 -> C:\Program Files\McAfee\MSC\npMcSnFFPl64.dll [2022-10-19] (McAfee, LLC -> ) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-12-07] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN) FF Plugin-x32: @mcafee.com/MSC,version=10 -> C:\Program Files (x86)\McAfee\MSC\npMcSnFFPl.dll [2022-10-19] (McAfee, LLC -> ) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-12-07] (Microsoft Corporation -> Microsoft Corporation) Chrome: ======= CHR Profile: C:\Users\SYU\AppData\Local\Google\Chrome\User Data\Default [2023-01-22] CHR StartupUrls: Default -> "hxxps://www.google.com/" CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] CHR HKLM\...\Chrome\Extension: [pbjikboenpfhbbejgkoklgkhjpfogcam] CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] CHR HKLM-x32\...\Chrome\Extension: [pbjikboenpfhbbejgkoklgkhjpfogcam] Brave: ======= BRA Profile: C:\Users\SYU\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2023-01-22] BRA DefaultSearchURL: Default -> hxxps://search.brave.com/search?q={searchTerms}&source=desktop BRA DefaultSearchKeyword: Default -> :br BRA DefaultSuggestURL: Default -> hxxps://search.brave.com/api/suggest?q={searchTerms} BRA Extension: (Google Traduction) - C:\Users\SYU\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2022-12-06] BRA Extension: (Otter.ai: Transcribe, Record Meeting Notes) - C:\Users\SYU\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\bnmojkbbkkonlmlfgejehefjldooiedp [2023-01-18] BRA Extension: (Dark Reader) - C:\Users\SYU\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\eimadpbcbfnmbkopoojfekhnkhdbieeh [2023-01-09] BRA Extension: (ChatGPT for Search Engines) - C:\Users\SYU\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\feeonheemodpkdckaljcjogdncpiiban [2023-01-18] BRA Extension: (Hola VPN - The Website Unblocker) - C:\Users\SYU\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\gkojfkhlekighikafcpjkiklfbnlmeio [2023-01-21] BRA Extension: (TubeBuddy) - C:\Users\SYU\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\mhkhmbddkmdggbhaaaodilponhnccicb [2023-01-19] BRA Extension: (Brave Local Data Files Updater) - C:\Users\SYU\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2023-01-22] BRA Extension: (Brave NTP background images) - C:\Users\SYU\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2022-12-06] BRA Extension: (Wallet Data Files Updater) - C:\Users\SYU\AppData\Local\BraveSoftware\Brave-Browser\User Data\BraveWallet [2023-01-13] BRA Extension: (Brave Ad Block Updater (AdGuard Français (plaintext))) - C:\Users\SYU\AppData\Local\BraveSoftware\Brave-Browser\User Data\flnkmpokemfpaajmiimmjeiandgoodgg [2023-01-22] BRA Extension: (Brave Ad Block Updater (Regional Catalog)) - C:\Users\SYU\AppData\Local\BraveSoftware\Brave-Browser\User Data\gkboaolpopklhgplhaaiboijnklogmbc [2023-01-13] BRA Extension: (Brave NTP Super Referrer mapping table) - C:\Users\SYU\AppData\Local\BraveSoftware\Brave-Browser\User Data\heplpbhjcbmiibdlchlanmdenffpiibo [2022-12-06] BRA Extension: (Brave Ad Block Updater (Default (plaintext))) - C:\Users\SYU\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodkpdagapdfkphljnddpjlldadblomo [2023-01-22] BRA Extension: (Brave NTP sponsored images) - C:\Users\SYU\AppData\Local\BraveSoftware\Brave-Browser\User Data\lcenblphbmngnohghkhpojmpflebkcpd [2023-01-22] BRA Extension: (Brave Ad Block Updater (Resources)) - C:\Users\SYU\AppData\Local\BraveSoftware\Brave-Browser\User Data\mfddibmblmbccpadfndgakiopmmhebop [2022-12-18] BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\SYU\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2023-01-18] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [174968 2022-12-06] (Brave Software, Inc. -> BraveSoftware Inc.) S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [174968 2022-12-06] (Brave Software, Inc. -> BraveSoftware Inc.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12548520 2023-01-14] (Microsoft Corporation -> Microsoft Corporation) S2 ExpressVPNService; C:\Program Files (x86)\ExpressVPN\bootstrap\amd64\nssm.exe [437088 2021-01-18] (Express Vpn LLC -> ExpressVPN) R2 HPAppHelperCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_9b42a3e82673e3bb\x64\AppHelperCap.exe [791496 2022-11-29] (HP Inc. -> HP Inc.) R2 HPDiagsCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_9b42a3e82673e3bb\x64\DiagsCap.exe [790472 2022-11-29] (HP Inc. -> HP Inc.) R2 HPNetworkCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_9b42a3e82673e3bb\x64\NetworkCap.exe [787416 2022-11-29] (HP Inc. -> HP Inc.) R2 HPOmenCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpomencustomcapcomp.inf_amd64_a1ba1c52244db36a\x64\OmenCap\OmenCap.exe [775144 2022-09-12] (HP Inc. -> HP Inc.) R2 HPSysInfoCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_9b42a3e82673e3bb\x64\SysInfoCap.exe [791512 2022-11-29] (HP Inc. -> HP Inc.) R2 HpTouchpointAnalyticsService; C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_970b3aa928c32e35\x64\TouchpointAnalyticsClientService.exe [493680 2022-09-28] (HP Inc. -> HP Inc.) S2 IntelAudioService; C:\WINDOWS\System32\DriverStore\FileRepository\intcoed.inf_amd64_dd6a7ef14d856351\\AS\\IAS\\IntelAudioService.exe [539816 ] (Intel Corporation -> Intel) R3 InventorySvc; C:\WINDOWS\system32\inventorysvc.dll [304480 2022-10-14] (Microsoft Windows -> Microsoft Corporation) R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [850256 2023-01-20] (McAfee, LLC -> McAfee, LLC) R2 McAPExe; C:\Program Files\Common Files\McAfee\VSCore_22_7\McApExe.exe [816696 2022-10-17] (McAfee, LLC -> McAfee, LLC) S3 McAWFwk; C:\Program Files\Common Files\McAfee\ActWiz\McAWFwk.exe [604312 2021-04-22] (McAfee, LLC -> McAfee, LLC) R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\5.4.105.0\\McCSPServiceHost.exe [3379584 ] (McAfee, LLC -> McAfee, LLC) S3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe [1215944 2022-09-15] (MUSARUBRA US LLC -> McAfee, LLC) R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe [1215944 2022-09-15] (MUSARUBRA US LLC -> McAfee, LLC) R3 mfevtp; C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe [1215944 2022-09-15] (MUSARUBRA US LLC -> McAfee, LLC) R2 ModuleCoreService; C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe [1571608 2022-10-09] (McAfee, LLC -> McAfee, LLC) R2 PEFService; C:\Program Files\Common Files\McAfee\PEF\CORE\PEFService.exe [4248712 2022-10-14] (McAfee, LLC -> McAfee, LLC) S2 SECOMNService; C:\WINDOWS\System32\SECOMN64.exe [760776 2022-06-15] (Microsoft Windows Hardware Compatibility Publisher -> Sound Research, Corp.) R2 SgrmBroker; C:\WINDOWS\system32\Sgrm\SgrmBroker.exe [414632 2022-05-07] (Microsoft Windows Publisher -> Microsoft Corporation) R2 TextInputManagementService; C:\WINDOWS\System32\TabSvc.dll [266240 2022-10-14] (Microsoft Windows -> Microsoft Corporation) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\NisSrv.exe [3191264 2022-12-09] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MsMpEng.exe [133592 2022-12-09] (Microsoft Windows Publisher -> Microsoft Corporation) R3 wuauserv; C:\WINDOWS\system32\wuauserv.dll [137568 2022-10-20] (Microsoft Windows -> Microsoft Corporation) S3 BraveElevationService; "C:\Program Files\BraveSoftware\Brave-Browser\Application\109.1.47.171\elevation_service.exe" [X] S3 GamesAppService; "C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe" [X] S2 HP Comm Recover; "C:\Program Files\HPCommRecovery\HPCommRecovery.exe" [X] R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvhmi.inf_amd64_85fb950577102ec1\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvhmi.inf_amd64_85fb950577102ec1\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 AirModeBtn; C:\WINDOWS\System32\drivers\AirModeBtn.sys [49680 2022-10-16] (LG Electronics Inc. -> LG Electroncis) R3 amdfendrmgr; C:\WINDOWS\System32\drivers\amdfendrmgr.sys [54712 2022-08-10] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) R3 amdwddmg; C:\WINDOWS\System32\DriverStore\FileRepository\u0382224.inf_amd64_c734d32d6997cdb7\B380779\amdkmdag.sys [94358448 2022-08-10] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) R3 AMDXE; C:\WINDOWS\System32\drivers\amdxe.sys [59920 2022-05-31] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) S3 AmUStor; C:\WINDOWS\system32\drivers\AmUStorU.sys [135296 2020-11-27] (Alcorlink Corp. -> ) R2 bfs; C:\WINDOWS\system32\drivers\bfs.sys [91504 2022-10-14] (Microsoft Windows -> Microsoft Corporation) R3 cfwids; C:\WINDOWS\System32\drivers\cfwids.sys [77888 2022-09-15] (Musarubra US LLC -> Trellix US LLC.) S3 dg_ssudbus; C:\WINDOWS\System32\drivers\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 expressvpnsplittunnel; C:\Program Files (x86)\ExpressVPN\splittunnel\expressvpnsplittunnel.sys [37024 2021-01-18] (ExprsVPN LLC -> ExpressVPN) R3 expressvpnwintun; C:\WINDOWS\System32\drivers\expressvpn-wintun.sys [46824 2021-01-18] (Express VPN International Ltd. -> ExpressVPN) S0 GenPass; C:\WINDOWS\System32\DriverStore\FileRepository\genpass.inf_amd64_bef88a423225ecdc\genpass.sys [62800 2022-05-07] (Microsoft Windows -> Microsoft Corporation) S3 HidHide; C:\WINDOWS\System32\drivers\HidHide.sys [66584 2022-06-27] (Microsoft Windows Hardware Compatibility Publisher -> Nefarius Software Solutions e.U.) R3 HPCustomCapDriver; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_a955fa431e522f5e\x64\hpcustomcapdriver.sys [25592 2021-09-15] (HP Inc. -> HP Inc.) R3 HPOmenCustomCapDriver; C:\WINDOWS\System32\DriverStore\FileRepository\hpomencustomcapdriver.inf_amd64_326f2e1d16385daf\x64\hpomencustomcapdriver.sys [23888 2020-04-21] (HP Inc. -> HP Inc.) R3 HpqKbFiltr; C:\WINDOWS\System32\drivers\HpqKbFiltr64.sys [37112 2022-10-16] (Hewlett-Packard Company -> Hewlett-Packard Company) R3 mfeaack; C:\WINDOWS\System32\drivers\mfeaack.sys [476224 2022-09-15] (Musarubra US LLC -> Trellix US LLC.) R3 mfeavfk; C:\WINDOWS\System32\drivers\mfeavfk.sys [349760 2022-09-15] (Musarubra US LLC -> Trellix US LLC.) S0 mfeelamk; C:\WINDOWS\System32\drivers\mfeelamk.sys [84440 2022-09-15] (Microsoft Windows Early Launch Anti-malware Publisher -> Trellix US LLC.) R3 mfefirek; C:\WINDOWS\System32\drivers\mfefirek.sys [445504 2022-09-15] (Musarubra US LLC -> Trellix US LLC.) R0 mfehidk; C:\WINDOWS\System32\drivers\mfehidk.sys [920128 2022-09-15] (Musarubra US LLC -> Trellix US LLC.) R3 mfencbdc; C:\WINDOWS\System32\DRIVERS\mfencbdc.sys [665424 2022-07-07] (Musarubra US LLC -> Trellix US LLC.) S3 mfencrk; C:\WINDOWS\System32\DRIVERS\mfencrk.sys [119632 2022-07-07] (Musarubra US LLC -> Trellix US LLC.) R3 mfeplk; C:\WINDOWS\System32\drivers\mfeplk.sys [112712 2022-09-15] (Musarubra US LLC -> Trellix US LLC.) R0 mfewfpk; C:\WINDOWS\System32\drivers\mfewfpk.sys [234584 2022-09-15] (Musarubra US LLC -> Trellix US LLC.) R3 NvModuleTracker; C:\WINDOWS\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [45656 2022-07-14] (Nvidia Corporation -> NVIDIA Corporation) S0 pvscsi; C:\WINDOWS\System32\drivers\pvscsii.sys [45408 2022-05-07] (Microsoft Windows -> VMware, Inc.) S3 RoutePolicy; C:\WINDOWS\System32\drivers\RoutePolicy.sys [98304 2022-05-07] (Microsoft Windows -> ) R1 rtf64; C:\WINDOWS\system32\DRIVERS\rtf64x64.sys [62352 2019-03-20] (Realtek Semiconductor Corp. -> Realtek) S3 RzCommon; C:\WINDOWS\System32\drivers\RzCommon.sys [54632 2021-03-30] (Razer USA Ltd. -> Razer Inc) S3 RzDev_0096; C:\WINDOWS\System32\drivers\RzDev_0096.sys [55688 2020-10-08] (Razer USA Ltd. -> Razer Inc) S3 ssudqcfilter; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [76832 2022-09-30] (Samsung Electronics CO., LTD. -> QUALCOMM Incorporated) R3 tapexpressvpn; C:\WINDOWS\System32\drivers\tapexpressvpn.sys [52904 2021-01-18] (ExprsVPN LLC -> The OpenVPN Project) R3 ViGEmBus; C:\WINDOWS\System32\DriverStore\FileRepository\vigembus.inf_amd64_8a927fc43d8a7838\x64\ViGEmBus.sys [91432 2020-04-21] (HP Inc. -> Benjamin Hoeglinger-Stelzer) S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [49568 2022-12-09] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [473376 2022-12-09] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [99616 2022-12-09] (Microsoft Windows -> Microsoft Corporation) R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [40104 2022-06-17] (HP Inc. -> HP) R2 wtd; C:\WINDOWS\System32\drivers\wtd.sys [118784 2022-11-08] (Microsoft Windows -> Microsoft Corporation) U3 aspnet_state; pas de ImagePath ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2023-01-22 12:53 - 2023-01-22 12:54 - 000035042 _____ C:\Users\SYU\Desktop\FRST.txt 2023-01-22 12:50 - 2023-01-22 12:54 - 000000000 ____D C:\FRST 2023-01-22 12:44 - 2023-01-22 12:44 - 002376704 _____ (Farbar) C:\Users\SYU\Desktop\FRST64.exe 2023-01-22 06:44 - 2023-01-22 06:46 - 000000000 ____D C:\AdwCleaner 2023-01-22 06:42 - 2023-01-22 06:42 - 000002328 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2023-01-22 06:42 - 2023-01-22 06:42 - 000002287 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2023-01-22 06:42 - 2023-01-22 06:42 - 000000000 ____D C:\Program Files\Google 2023-01-22 06:41 - 2023-01-22 12:52 - 000000000 ____D C:\Program Files (x86)\Google 2023-01-22 06:41 - 2023-01-22 06:47 - 000003590 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2023-01-22 06:41 - 2023-01-22 06:47 - 000003466 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2023-01-22 06:41 - 2023-01-22 06:41 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2023-01-22 06:41 - 2023-01-22 06:41 - 000003476 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting 2023-01-22 06:41 - 2023-01-22 06:41 - 000002870 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - SYU 2023-01-22 06:41 - 2023-01-22 06:41 - 000000870 _____ C:\Users\Public\Desktop\CCleaner.lnk 2023-01-22 06:41 - 2023-01-22 06:41 - 000000760 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job 2023-01-22 06:41 - 2023-01-22 06:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2023-01-22 06:41 - 2023-01-22 06:41 - 000000000 ____D C:\Program Files\CCleaner 2023-01-22 06:40 - 2023-01-22 06:41 - 008791352 _____ (Malwarebytes) C:\Users\SYU\Downloads\adwcleaner.exe 2023-01-22 06:40 - 2023-01-22 06:40 - 053469680 _____ (Piriform Software Ltd) C:\Users\SYU\Downloads\ccsetup608.exe 2023-01-21 21:13 - 2023-01-21 21:14 - 000145471 _____ C:\Users\SYU\Desktop\Fm8qR96X0BAbteR.jpeg 2023-01-21 20:02 - 2023-01-21 20:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee 2023-01-20 18:37 - 2023-01-20 18:37 - 000000305 _____ C:\Users\SYU\Downloads\index.html 2023-01-19 14:19 - 2023-01-19 14:19 - 000000223 _____ C:\Users\SYU\Desktop\Vengeful Guardian Moonrider Demo.url 2023-01-19 09:36 - 2023-01-19 09:36 - 000809500 _____ C:\WINDOWS\system32\perfh00C.dat 2023-01-19 09:36 - 2023-01-19 09:36 - 000156952 _____ C:\WINDOWS\system32\perfc00C.dat 2023-01-17 12:35 - 2023-01-17 12:35 - 000000000 ____D C:\Users\SYU\.huggingface 2023-01-17 11:55 - 2023-01-17 12:42 - 000000000 ____D C:\invokeai 2023-01-17 11:54 - 2023-01-17 11:54 - 000000000 ____D C:\Users\SYU\Downloads\InvokeAI-installer-v2.2.5p2-windows 2023-01-17 11:53 - 2023-01-17 11:53 - 000031892 _____ C:\Users\SYU\Downloads\InvokeAI-installer-v2.2.5p2-windows.zip 2023-01-16 15:15 - 2023-01-16 15:15 - 000000022 _____ C:\Users\SYU\.gitconfig 2023-01-16 15:14 - 2023-01-16 15:14 - 000000000 ____D C:\Users\SYU\AppData\Local\Caphyon 2023-01-16 15:14 - 2023-01-16 15:14 - 000000000 ____D C:\ProgramData\regid.1995-09.com.example 2023-01-16 15:13 - 2023-01-16 15:14 - 000000000 ____D C:\SD_A1111WebUI 2023-01-16 15:11 - 2023-01-16 15:11 - 004903024 _____ (Empire Media Science) C:\Users\SYU\Downloads\A1111.Web.UI.Autoinstaller.v1.5.7.exe 2023-01-15 18:49 - 2023-01-17 12:40 - 000000000 ____D C:\Users\SYU\.cache 2023-01-15 18:47 - 2023-01-15 18:47 - 000000000 ____D C:\Users\SYU\.matplotlib 2023-01-15 18:32 - 2023-01-17 11:53 - 000000501 _____ C:\Users\SYU\.bash_history 2023-01-15 17:56 - 2023-01-15 17:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Git 2023-01-15 17:54 - 2023-01-17 11:53 - 000000000 ____D C:\ai 2023-01-07 22:31 - 2023-01-07 22:31 - 000000000 ____D C:\Users\Public\Documents\AdobeInstalledCodecsTier2 2023-01-07 21:51 - 2023-01-07 21:51 - 000001257 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe After Effects 2022.lnk 2023-01-07 21:51 - 2023-01-07 21:51 - 000001245 _____ C:\Users\SYU\Desktop\Adobe After Effects 2022.lnk 2023-01-07 21:49 - 2023-01-07 21:49 - 000000821 _____ C:\Users\SYU\AppData\Local\recently-used.xbel 2023-01-05 11:30 - 2023-01-05 11:34 - 000000000 ____D C:\Users\SYU\Desktop\capsule 2023-01-05 11:11 - 2023-01-05 11:17 - 000000195 _____ C:\Users\SYU\Desktop\doc.txt 2023-01-04 15:29 - 2023-01-04 15:29 - 000000223 _____ C:\Users\SYU\Desktop\Space Runaway.url 2023-01-04 14:28 - 2023-01-04 14:28 - 000000000 ____D C:\Users\SYU\Downloads\Adobe After Effects 2022 v22.0.0.111 (x64) Pre-Activated [Yolodelabanane] 2023-01-03 16:21 - 2023-01-03 16:49 - 000000208 _____ C:\Users\SYU\Desktop\Nouveau Text Document.txt 2023-01-03 12:21 - 2023-01-03 12:21 - 000000000 ____D C:\Users\SYU\Creative Cloud Files 2023-01-03 11:54 - 2023-01-03 11:54 - 416082715 _____ C:\Users\SYU\Downloads\Disc 10 - Image Soundtrack _Meiou Hades_-20230103T105410Z-001.zip 2023-01-03 11:53 - 2023-01-03 11:54 - 472481343 _____ C:\Users\SYU\Downloads\Disc 07 - TV Series Soundtrack #05-20230103T105333Z-001.zip 2023-01-03 11:52 - 2023-01-03 11:53 - 523475358 _____ C:\Users\SYU\Downloads\Disc 11 - Complete Song Collection-20230103T105245Z-001.zip 2023-01-03 11:42 - 2023-01-03 11:42 - 513918715 _____ C:\Users\SYU\Downloads\Disc 13 - Complete Song Collection-20230103T102537Z-001.zip 2023-01-03 11:25 - 2023-01-03 11:25 - 310516134 _____ C:\Users\SYU\Downloads\Disc 02 - TV Series Soundtrack #02-20230103T102452Z-001.zip 2023-01-03 11:22 - 2023-01-03 11:22 - 169773140 _____ C:\Users\SYU\Downloads\le-secret-des-maisons-la-lecture-traditionnelle-retrouvee-des-maisons.zip 2023-01-03 11:12 - 2023-01-03 11:12 - 328344496 _____ C:\Users\SYU\Downloads\Disc 04 - TV Series Soundtrack #03-20230103T101211Z-001.zip 2023-01-03 10:59 - 2023-01-07 21:51 - 000000000 ____D C:\Users\Public\Documents\Adobe 2023-01-03 10:59 - 2023-01-03 10:59 - 000001137 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Premiere Pro 2022.lnk 2023-01-03 10:59 - 2023-01-03 10:59 - 000001125 _____ C:\Users\SYU\Desktop\Adobe Premiere Pro 2022.lnk 2023-01-03 10:58 - 2023-01-03 10:58 - 000000000 ____D C:\Users\Public\Documents\AdobeInstalledCodecs 2023-01-03 10:55 - 2023-01-03 10:55 - 000000000 ____D C:\Users\SYU\Downloads\Adobe Premiere Pro 2022 v22.0.0.169 (x64) Pre-Activated [Yolodelabanane] 2023-01-02 18:30 - 2023-01-02 18:30 - 000000872 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk 2023-01-02 18:30 - 2023-01-02 18:30 - 000000860 _____ C:\Users\Public\Desktop\Audacity.lnk 2023-01-02 18:30 - 2023-01-02 18:30 - 000000000 ____D C:\Program Files\Audacity 2023-01-02 18:29 - 2023-01-02 18:29 - 034788008 _____ (Audacity Team ) C:\Users\SYU\Downloads\audacity-3.1.3-installer.exe 2023-01-02 18:28 - 2023-01-02 18:28 - 001805104 _____ ( ) C:\Users\SYU\Downloads\audacity-3.1.3-installer_d-WCys1.exe 2023-01-02 01:05 - 2023-01-02 01:05 - 014396432 _____ (Audacity Team ) C:\Users\SYU\Downloads\audacity-win-3.2.3-x64.exe 2023-01-02 00:23 - 2023-01-09 22:44 - 000000000 ____D C:\Users\SYU\Documents\Audacity 2023-01-01 21:47 - 2023-01-14 13:50 - 000000000 ____D C:\Users\SYU\AppData\Roaming\audacity 2023-01-01 21:47 - 2023-01-01 21:47 - 000000000 ____D C:\Users\SYU\AppData\Local\audacity 2023-01-01 21:42 - 2023-01-01 21:42 - 000000000 ____D C:\Users\SYU\AppData\Local\Yandex 2023-01-01 21:24 - 2023-01-01 21:24 - 000000000 ____D C:\Users\SYU\Desktop\iDées Business 2023-01-01 21:00 - 2023-01-01 21:01 - 000000000 ____D C:\Users\SYU\Documents\VsCode 2022-12-30 12:56 - 2022-12-30 12:56 - 000000015 _____ C:\Users\SYU\AppData\Roaming\obs-virtualcam.txt 2022-12-30 11:11 - 2022-12-30 11:12 - 000000190 _____ C:\Users\SYU\Desktop\sheet testo.url 2022-12-28 17:42 - 2022-12-28 17:42 - 000001225 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Jagannatha Hora.lnk 2022-12-28 17:42 - 2022-12-28 17:42 - 000001213 _____ C:\Users\Public\Desktop\Jagannatha Hora.lnk 2022-12-28 17:42 - 2022-12-28 17:42 - 000000000 ____D C:\Users\SYU\Downloads\jh_full_install 2022-12-28 17:42 - 2022-12-28 17:42 - 000000000 ____D C:\Program Files (x86)\Jagannatha Hora 2022-12-28 17:39 - 2022-12-28 17:41 - 107105550 _____ C:\Users\SYU\Downloads\jh_full_install.zip 2022-12-24 13:58 - 2023-01-03 11:15 - 000000000 ____D C:\Users\SYU\Documents\My Games 2022-12-24 13:51 - 2022-12-24 13:51 - 000000221 _____ C:\Users\SYU\Desktop\Alice Madness Returns.url ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2023-01-22 12:46 - 2022-12-06 11:45 - 000000000 ____D C:\ProgramData\NVIDIA 2023-01-22 12:40 - 2022-12-06 11:36 - 000000000 ___HD C:\Program Files\WindowsApps 2023-01-22 12:40 - 2022-12-06 11:36 - 000000000 ____D C:\WINDOWS\AppReadiness 2023-01-22 07:59 - 2022-12-06 11:36 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2023-01-22 06:46 - 2022-12-06 11:45 - 000000000 ____D C:\ProgramData\HP 2023-01-22 06:46 - 2022-12-06 11:36 - 000000000 ____D C:\WINDOWS\SystemTemp 2023-01-22 06:46 - 2021-11-30 08:51 - 000000000 ____D C:\ProgramData\Hewlett-Packard 2023-01-22 06:46 - 2021-08-20 08:10 - 000000000 ___HD C:\hp 2023-01-22 06:46 - 2021-08-20 06:42 - 000000000 ____D C:\Program Files (x86)\HP 2023-01-22 06:44 - 2022-12-06 19:46 - 000000000 ____D C:\Program Files (x86)\Steam 2023-01-22 06:43 - 2022-12-09 15:32 - 000000000 ____D C:\Users\SYU\AppData\Local\CrashDumps 2023-01-22 06:43 - 2022-12-06 11:41 - 000000000 ____D C:\WINDOWS\Panther 2023-01-22 06:41 - 2022-12-06 17:51 - 000000000 ____D C:\Users\SYU\AppData\Local\D3DSCache 2023-01-21 19:45 - 2022-12-06 11:44 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2023-01-21 19:09 - 2022-12-06 11:51 - 000000000 ____D C:\WINDOWS\system32\Tasks\McAfee 2023-01-21 13:07 - 2022-12-06 11:44 - 000002449 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2023-01-20 18:52 - 2022-12-06 19:51 - 000000000 ____D C:\Users\SYU\AppData\Roaming\Code 2023-01-20 18:39 - 2022-12-06 19:51 - 000000000 ____D C:\Users\SYU\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Visual Studio Code 2023-01-20 11:33 - 2022-12-07 12:55 - 000000000 ____D C:\Users\SYU\AppData\Local\OGH 2023-01-19 14:19 - 2022-12-06 20:00 - 000000000 ____D C:\Users\SYU\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2023-01-19 14:07 - 2022-12-06 17:52 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3260349332-2736728831-3187818672-1001 2023-01-19 14:07 - 2022-12-06 17:52 - 000003350 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3260349332-2736728831-3187818672-1001 2023-01-19 14:07 - 2022-12-06 17:52 - 000002422 _____ C:\Users\SYU\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2023-01-19 09:36 - 2022-12-06 11:55 - 001829086 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2023-01-19 09:36 - 2022-12-06 11:36 - 000000000 ____D C:\WINDOWS\INF 2023-01-19 09:29 - 2022-12-06 11:51 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2023-01-19 09:29 - 2022-12-06 11:44 - 000012288 ___SH C:\DumpStack.log.tmp 2023-01-19 09:29 - 2022-12-06 11:36 - 000000000 ____D C:\WINDOWS\ServiceState 2023-01-18 21:49 - 2022-12-06 19:59 - 000000000 ____D C:\Users\SYU\AppData\Roaming\Evernote 2023-01-18 18:27 - 2022-12-06 11:33 - 000008192 _____ C:\WINDOWS\system32\config\ELAM 2023-01-17 13:57 - 2022-12-13 17:25 - 000000000 ____D C:\Users\SYU\AppData\Roaming\vlc 2023-01-17 12:35 - 2022-12-06 17:47 - 000000000 ____D C:\Users\SYU 2023-01-17 10:27 - 2021-11-30 08:54 - 000000000 ____D C:\ProgramData\Package Cache 2023-01-15 18:24 - 2022-12-06 17:47 - 000000000 ____D C:\Users\SYU\AppData\Local\Packages 2023-01-15 18:24 - 2021-06-25 19:11 - 000000000 ____D C:\ProgramData\Packages 2023-01-15 17:56 - 2022-12-07 11:58 - 000000000 ____D C:\Program Files\Git 2023-01-14 19:25 - 2021-08-20 06:44 - 000000000 ____D C:\Program Files\Microsoft Office 2023-01-12 21:51 - 2022-12-06 17:54 - 000002369 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk 2023-01-12 21:51 - 2022-12-06 17:54 - 000002328 _____ C:\Users\Public\Desktop\Brave.lnk 2023-01-11 16:02 - 2022-12-08 21:20 - 000000000 ____D C:\WINDOWS\system32\MRT 2023-01-11 16:00 - 2022-12-08 21:20 - 150199536 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2023-01-10 19:33 - 2022-12-19 21:34 - 000000000 ____D C:\Users\SYU\AppData\Roaming\obs-studio 2023-01-10 11:54 - 2022-12-06 11:50 - 000001607 _____ C:\WINDOWS\system32\config\VSMIDK 2023-01-08 22:33 - 2022-12-06 11:33 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2023-01-07 21:54 - 2022-12-09 13:30 - 000000000 ____D C:\Users\SYU\Documents\Adobe 2023-01-07 21:54 - 2022-12-09 13:25 - 000000000 ____D C:\Users\SYU\AppData\Local\Adobe 2023-01-07 21:51 - 2022-12-09 13:26 - 000000000 ____D C:\Program Files\Common Files\Adobe 2023-01-07 21:51 - 2022-12-09 13:26 - 000000000 ____D C:\Program Files\Adobe 2023-01-07 21:51 - 2022-12-09 13:25 - 000000000 ____D C:\ProgramData\Adobe 2023-01-07 21:51 - 2022-12-06 17:51 - 000000000 ____D C:\Users\SYU\AppData\Roaming\Adobe 2023-01-07 21:49 - 2022-12-08 16:22 - 000000000 ____D C:\Users\SYU\AppData\Roaming\deluge 2023-01-06 22:43 - 2022-12-07 12:55 - 000003768 _____ C:\WINDOWS\system32\Tasks\SystemOptimizer 2023-01-06 22:43 - 2022-12-06 11:41 - 000000000 ____D C:\Program Files\HP 2023-01-04 14:28 - 2022-12-08 16:14 - 000000000 ____D C:\Users\SYU\Documents\torrents 2023-01-04 11:58 - 2022-12-16 10:41 - 000000000 ____D C:\Users\SYU\Documents\Administratif 2023-01-04 11:37 - 2022-12-06 11:51 - 000003690 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2023-01-04 11:37 - 2022-12-06 11:51 - 000003566 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2022-12-29 09:17 - 2022-12-06 11:44 - 000601880 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2022-12-25 10:59 - 2022-12-06 11:36 - 000000000 ____D C:\WINDOWS\LiveKernelReports ==================== Fichiers à la racine de certains dossiers ======== 2022-12-30 12:56 - 2022-12-30 12:56 - 000000015 _____ () C:\Users\SYU\AppData\Roaming\obs-virtualcam.txt 2023-01-07 21:49 - 2023-01-07 21:49 - 000000821 _____ () C:\Users\SYU\AppData\Local\recently-used.xbel 2022-12-08 15:15 - 2022-12-08 15:15 - 000000003 _____ () C:\Users\SYU\AppData\Local\updater.log 2022-12-08 15:15 - 2022-12-08 15:15 - 000000424 _____ () C:\Users\SYU\AppData\Local\UserProducts.xml ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================