Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 27-02-2023 Exécuté par thierry (administrateur) sur DESKTOP-PFBKONT (Acer Aspire X3-710) (27-02-2023 18:52:44) Exécuté depuis C:\Users\thierry\Desktop Profils chargés: thierry Plate-forme: Microsoft Windows 10 Famille Version 22H2 19045.2604 (X64) Langue: Français (France) Navigateur par défaut: FF Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QAAgent.exe (C:\Program Files (x86)\Acer\Acer Drive\AcerDriveTray.exe ->) (Acer Incorporated -> Acer Incorporated) C:\Program Files (x86)\Acer\Acer Drive\AcerDriveUI.exe (C:\Program Files\Acer\Acer Quick Access\QASvc.exe ->) (Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QAAdminAgent.exe (C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <7> (explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_e43bf4f1a295d985\igfxEM.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <13> (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe (services.exe ->) (Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QASvc.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\SecureLine VPN\VpnSvc.exe (services.exe ->) (CyberLink Corp. -> ) C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe (services.exe ->) (Dashlane -> Dashlane SAS) C:\Program Files (x86)\Dashlane\Upgrade\DashlaneUpgradeService.exe (services.exe ->) (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (services.exe ->) (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (services.exe ->) (Intel Corporation) [Fichier non signé] C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe (services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_e43bf4f1a295d985\igfxCUIService.exe (services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1911.3-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1911.3-0\NisSrv.exe (svchost.exe ->) (Acer Incorporated -> ) C:\OEM\Preload\FubTracking\FubTracking.exe (svchost.exe ->) (Acer Incorporated -> ) C:\Program Files (x86)\Acer\Care Center\ACCStd.exe (svchost.exe ->) (Acer Incorporated -> Acer Incorporated) C:\Program Files (x86)\Acer\Acer Drive\AcerDriveTray.exe (svchost.exe ->) (Acer Incorporated -> Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe (svchost.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2204.13303.0_x64__8wekyb3d8bbwe\Cortana.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16734720 2016-11-11] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [WindowsDefender] => "%ProgramFiles%\Windows Defender\MSASCuiL.exe" (Pas de fichier) HKLM-x32\...\Run: [abDocsDllLoader] => C:\Program Files (x86)\Acer\abDocs\abDocsDllLoader.exe [91488 2017-09-28] (Acer Incorporated -> ) HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION HKLM Group Policy restriction on software: %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot% <==== ATTENTION HKLM Group Policy restriction on software: %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir% <==== ATTENTION HKU\S-1-5-21-713585273-3206071512-1856339584-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [38966072 2023-02-08] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) HKU\S-1-5-21-713585273-3206071512-1856339584-1001\...\Run: [MicrosoftEdgeAutoLaunch_5AAF3FA48ACC62E04648896191BBE0B2] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4243408 2023-02-25] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-713585273-3206071512-1856339584-1001\...\Run: [AvastBrowserAutoLaunch_3D1B29DAF24AC0C29FDA94F72592130B] => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [3257832 2023-01-26] (Avast Software s.r.o. -> AVAST Software) HKLM\...\Windows x64\Print Processors\Epson Inkjet: C:\Windows\System32\spool\prtprocs\x64\EP0NPP01.DLL [38912 2017-01-01] (Microsoft Windows Hardware Compatibility Publisher -> SEIKO EPSON CORPORATION) HKLM\...\Print\Monitors\Epson Inbox Language Monitor01: C:\WINDOWS\system32\EP0SLM01.DLL [77824 2017-01-01] (Microsoft Windows Hardware Compatibility Publisher -> SEIKO EPSON CORPORATION) HKLM\Software\Microsoft\Active Setup\Installed Components: [{30C521FB-255B-46C8-9F0D-EE5AE371C9AA}] -> "C:\Program Files (x86)\AVAST Software\Browser\Application\91.1.10672.124\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\110.0.5481.105\Installer\chrmstp.exe [2023-02-24] (Google LLC -> Google LLC) HKLM\Software\Microsoft\Active Setup\Installed Components: [{A8504530-742B-42BC-895D-2BAD6406F698}] -> C:\Program Files (x86)\AVAST Software\Browser\Application\109.0.19987.120\Installer\chrmstp.exe [2023-02-06] (Avast Software s.r.o. -> AVAST Software) HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {05547C0B-3076-49B4-A82E-F4036D21FC2A} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe /backup /iavs (Pas de fichier) Task: {07B8073F-5879-499D-824F-D9FA4DA9E117} - System32\Tasks\AcerDriveProxyLauncher => C:\Program Files (x86)\Acer\Acer Drive\AcerDriveProxy.exe [2290016 2015-09-30] (Acer Incorporated -> Acer Incorporated) Task: {1080F51C-69AA-4735-9D19-1679D343AC87} - System32\Tasks\{8ADFCAE4-D012-46CB-8298-357BC05E8CE7} => C:\Windows\system32\pcalua.exe -a E:\_SETIMG\EPSSWT.EXE -d E:\ -c /NODISP:"ALL" /NOWIZ:"..\EPSETUP.EXE" /ST:"3500,WIN98,WINME" Task: {285FDD78-818A-40FC-98A0-74B8740775B7} - System32\Tasks\ACCBackgroundApplication => C:\Program Files (x86)\Acer\Care Center\ACCStd.exe [4696880 2018-05-28] (Acer Incorporated -> ) Task: {28EFDAA8-A883-4E83-8CF2-B746A5D2A67E} - System32\Tasks\AcerDriveUpdateChecker => C:\Program Files (x86)\Acer\Acer Drive\CheckUpdate.exe [24416 2015-08-05] (Acer Incorporated -> Acer Incorporated) Task: {2BC53883-7285-4211-B769-86F2F8884CB5} - System32\Tasks\Avast Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [3257832 2023-01-26] (Avast Software s.r.o. -> AVAST Software) Task: {33303405-20A5-49A3-B5B4-C8585DBEF61E} - System32\Tasks\Software Update Application => C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [472928 2015-07-10] (Acer Incorporated -> Acer Incorporated) Task: {4AEAC3AF-54E9-4DEB-9C94-CE9C3069E097} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe /from_scheduler:1 (Pas de fichier) Task: {5548A7EE-9287-4FE5-894E-3206229A4ADF} - System32\Tasks\ACC => C:\Program Files (x86)\Acer\Care Center\LiveUpdateChecker.exe [2920752 2018-05-28] (Acer Incorporated -> ) Task: {57F32914-4668-4F07-93FF-A5CED7C07112} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2020-02-27] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {67AAC391-9AF2-4540-A600-0A12937FEE2F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2020-02-27] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {6E9BE51C-69F0-4FEB-8340-002C9F3FDC9E} - System32\Tasks\ACCAgent => C:\Program Files (x86)\Acer\Care Center\LiveUpdateAgent.exe [40288 2015-07-10] (Acer Incorporated -> ) Task: {7B083BD7-588F-4845-8602-F164F13222C4} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [716192 2023-02-15] (Mozilla Corporation -> Mozilla Foundation) Task: {7F48F84F-951B-4A2E-880E-6F153A7526F0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2020-02-27] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {830F2E45-AEBA-46BB-BFBF-EFA281E4B0CE} - \Microsoft\Windows\UNP\RunCampaignManager -> Pas de fichier <==== ATTENTION Task: {89743C92-F758-407C-B9C7-D324F50FF5A6} - System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [3257832 2023-01-26] (Avast Software s.r.o. -> AVAST Software) Task: {8B2CB895-2696-4F6C-9BF8-D19552217520} - System32\Tasks\CCleanerSkipUAC - thierry => C:\Program Files\CCleaner\CCleaner.exe [32631096 2023-02-08] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) Task: {904FFB92-F9E2-4A4E-8EA6-86F298357972} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [416432 2015-07-31] (Microsoft Corporation -> Microsoft Corporation) Task: {908F206E-1CAF-4376-8C85-4939B61569B5} - System32\Tasks\Avast SecureLine VPN Update => C:\Program Files\Avast Software\SecureLine VPN\VpnUpdate.exe [1217944 2023-02-14] (Avast Software s.r.o. -> AVAST Software) Task: {952EA6A2-3408-4652-BDD9-5BA66A31CE19} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2020-02-27] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {9C0F03C3-5A89-47D0-9CC0-C2730693BE56} - System32\Tasks\Avast Software\Avast SecureLine VPN Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-vpn\icarus.exe [6694224 2023-01-26] (Avast Software s.r.o. -> Avast Software) Task: {9CDA9D37-5C92-40E5-8F13-DE4C2CAA37DA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-07-19] (Google Inc -> Google Inc.) Task: {A77546E1-71D0-4711-BD8B-C72B23F50CA3} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [416432 2015-07-31] (Microsoft Corporation -> Microsoft Corporation) Task: {AF638F78-8A3B-4C73-8D29-2AD48EFCB86D} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2023-02-08] (Piriform Software Ltd -> Piriform) Task: {AFAFBB73-60A5-4F98-BC66-262E702F4560} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [191120 2022-12-13] (Avast Software s.r.o. -> AVAST Software) Task: {B2A231B1-8605-4B9E-8B53-ADCF2FCC27C6} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe (Pas de fichier) Task: {C2330825-3128-4B16-8154-7D197637F2A6} - System32\Tasks\BacKGroundAgent => C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [65824 2017-09-26] (Acer Incorporated -> Acer Incorporated) Task: {CCDEFD88-9ED7-4842-9B84-ECC49DC100AD} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4703544 2023-02-08] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "44840c1a-50a9-498d-90f2-d4706814cf76" --version "6.09.10300" --silent Task: {CDA66BCF-67B9-4111-A98F-719C8E92306A} - System32\Tasks\Quick Access => C:\Program Files\Acer\Acer Quick Access\QALauncher.exe [379232 2015-07-17] (Acer Incorporated -> Acer Incorporated) Task: {D2315BB3-9812-4141-AD7D-498FDF2DAACE} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1560056 2023-02-01] (Adobe Inc. -> Adobe Inc.) Task: {D297D93F-E997-423F-A1F0-67FB07FFB189} - System32\Tasks\abDocsDllLoader => C:\Program Files (x86)\Acer\abDocs\abDocsDllLoaderMonitor.exe [1769312 2017-09-28] (Acer Incorporated -> ) Task: {D3B82BAA-C99C-4B48-9DBF-65ED79461B20} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe (Pas de fichier) Task: {DC22A493-B384-4847-B56D-AE99A8A7C680} - System32\Tasks\Avast Software\Avast SecureLine VPN Bug Report => C:\Program Files\Avast Software\SecureLine VPN\AvBugReport.exe [4698008 2023-02-14] (Avast Software s.r.o. -> AVAST Software) -> --send "dumps|report" --silent --product 11 --programpath "C:\Program Files\Avast Software\SecureLine VPN" --configpath "C:\ProgramData\Avast Software\SecureLine VPN" --path "C:\ProgramData\Avast Software\SecureLine VPN\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --logpath "C:\ProgramData\Avast Software\SecureLine VPN\log" --guid 7dd9ffed-fd22-4528-9115-80f947a7d0e4 Task: {E22C5F8E-0CEF-488D-9CBB-028D1286CED6} - System32\Tasks\FUBTrackingByPLD => C:\OEM\Preload\FubTracking\FubTracking.exe [30976 2015-05-14] (Acer Incorporated -> ) Task: {F267B8D7-1F99-43BC-A7C8-7C7E6236BB1A} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [674720 2023-02-15] (Mozilla Corporation -> Mozilla Corporation) -> --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {F51BE1ED-9BD5-4E29-A6D6-EA59DDFED181} - System32\Tasks\AcerDriveTrayLauncher => C:\Program Files (x86)\Acer\Acer Drive\AcerDriveTray.exe [598880 2015-09-30] (Acer Incorporated -> Acer Incorporated) Task: {FA6C5783-4BCB-45DB-A8B5-4C66B563994F} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-07-19] (Google Inc -> Google Inc.) Task: {FEDC34EF-5496-4906-8AEB-3D7C77198882} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [191120 2022-12-13] (Avast Software s.r.o. -> AVAST Software) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{6bd0530e-81b4-4380-a915-689dbb6962b4}: [DhcpNameServer] 192.168.1.254 Edge: ======= Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)] Edge Extension: (Pas de nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [non trouvé(e)] Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)] Edge Extension: (Pas de nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [non trouvé(e)] Edge Profile: C:\Users\thierry\AppData\Local\Microsoft\Edge\User Data\Default [2023-02-27] Edge Extension: (Edge relevant text changes) - C:\Users\thierry\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-02-02] Edge HKLM-x32\...\Edge\Extension: [ihcjicgdanjaechkgeegckofjjedodee] FireFox: ======== FF DefaultProfile: z9ewl4db.default-1539776015754 FF ProfilePath: C:\Users\thierry\AppData\Roaming\Mozilla\Firefox\Profiles\z9ewl4db.default-1539776015754 [2023-02-27] FF Homepage: Mozilla\Firefox\Profiles\z9ewl4db.default-1539776015754 -> hxxp://www.msn.com/ FF Notifications: Mozilla\Firefox\Profiles\z9ewl4db.default-1539776015754 -> hxxps://www.arvalis-infos.fr FF HomepageOverride: Mozilla\Firefox\Profiles\z9ewl4db.default-1539776015754 -> Disabled: _39Members_@www.mapsgalaxy.com FF NewTabOverride: Mozilla\Firefox\Profiles\z9ewl4db.default-1539776015754 -> Disabled: _39Members_@www.mapsgalaxy.com FF NewTabOverride: Mozilla\Firefox\Profiles\z9ewl4db.default-1539776015754 -> Enabled: wikipedia@search.mozilla.org FF NewTabOverride: Mozilla\Firefox\Profiles\z9ewl4db.default-1539776015754 -> Enabled: qwant@search.mozilla.org FF NewTabOverride: Mozilla\Firefox\Profiles\z9ewl4db.default-1539776015754 -> Enabled: ebay@search.mozilla.org FF NewTabOverride: Mozilla\Firefox\Profiles\z9ewl4db.default-1539776015754 -> Enabled: ddg@search.mozilla.org FF NewTabOverride: Mozilla\Firefox\Profiles\z9ewl4db.default-1539776015754 -> Enabled: amazon@search.mozilla.org FF NewTabOverride: Mozilla\Firefox\Profiles\z9ewl4db.default-1539776015754 -> Enabled: bing@search.mozilla.org FF NewTabOverride: Mozilla\Firefox\Profiles\z9ewl4db.default-1539776015754 -> Enabled: google@search.mozilla.org FF Extension: (Malwarebytes Browser Guard) - C:\Users\thierry\AppData\Roaming\Mozilla\Firefox\Profiles\z9ewl4db.default-1539776015754\Extensions\{242af0bb-db11-4734-b7a0-61cb8a9b20fb}.xpi [2022-10-10] FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2023-02-14] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -> Foxit Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-04-21] (Intel(R) Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-04-21] (Intel(R) Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-07-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=3 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1579.3\npAvastBrowserUpdate3.dll [2022-12-13] (Avast Software s.r.o. -> AVAST Software) FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=9 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1579.3\npAvastBrowserUpdate3.dll [2022-12-13] (Avast Software s.r.o. -> AVAST Software) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2016-11-23] (WildTangent Inc -> ) Chrome: ======= CHR Profile: C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default [2023-02-26] CHR HomePage: Default -> hxxp://www.google.com CHR Extension: (Slides) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-07-19] CHR Extension: (Docs) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-07-19] CHR Extension: (Google Drive) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-07-19] CHR Extension: (YouTube) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-07-19] CHR Extension: (Avast SafePrice) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2018-10-17] CHR Extension: (Sheets) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-07-19] CHR Extension: (Google Docs Offline) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-10-17] CHR Extension: (Avast Online Security) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2018-10-17] CHR Extension: (Chrome Web Store Payments) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-07-19] CHR Extension: (Gmail) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2018-07-19] CHR Extension: (Chrome Media Router) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-10-17] CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-02-01] (Adobe Inc. -> Adobe Inc.) S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [191120 2022-12-13] (Avast Software s.r.o. -> AVAST Software) S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [191120 2022-12-13] (Avast Software s.r.o. -> AVAST Software) S3 AvastSecureBrowserElevationService; C:\Program Files (x86)\AVAST Software\Browser\Application\109.0.19987.120\elevation_service.exe [1802816 2023-01-26] (Avast Software s.r.o. -> AVAST Software) R2 Dashlane Upgrade Service; C:\Program Files (x86)\Dashlane\Upgrade\DashlaneUpgradeService.exe [75056 2015-06-24] (Dashlane -> Dashlane SAS) S2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [350064 2016-11-23] (WildTangent Inc -> WildTangent) R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [Fichier non signé] S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [Fichier non signé] R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [8967840 2023-02-18] (Malwarebytes Inc. -> Malwarebytes) R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [450400 2015-07-17] (Acer Incorporated -> Acer Incorporated) R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [253776 2014-10-08] (CyberLink Corp. -> ) R2 SecureLine; C:\Program Files\Avast Software\SecureLine VPN\VpnSvc.exe [9639320 2023-02-14] (Avast Software s.r.o. -> AVAST Software) S3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [251232 2015-09-14] (Acer Incorporated -> acer) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2020-02-27] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2020-02-27] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 aswVpnRdr; C:\WINDOWS\System32\drivers\aswVpnRdr.sys [72584 2023-02-14] (Avast Software s.r.o. -> Avast Software) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Fichier non signé] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Fichier non signé] S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [158640 2022-06-12] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [223176 2023-02-27] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2022-04-30] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [77736 2023-02-27] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239544 2023-02-27] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [181816 2023-02-27] (Malwarebytes Inc. -> Malwarebytes) R3 MpKsldfdde4fc; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{C3A094A4-A5F0-4534-AB5B-16CAA257E543}\MpKslDrv.sys [214280 2023-02-27] (Microsoft Windows -> Microsoft Corporation) R1 netfilter2; C:\WINDOWS\System32\drivers\netfilter2.sys [114104 2022-12-15] (Piriform Software Ltd -> Windows (R) Win 7 DDK provider) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [45664 2020-02-27] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [355760 2020-02-27] (Microsoft Windows -> Microsoft Corporation) S3 wdm_usb; C:\WINDOWS\system32\DRIVERS\usb2ser.sys [151184 2016-07-15] (NGO -> MBB) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54192 2020-02-27] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2023-02-27 18:52 - 2023-02-27 18:54 - 000030079 _____ C:\Users\thierry\Desktop\FRST.txt 2023-02-27 18:51 - 2023-02-27 18:53 - 000000000 ____D C:\FRST 2023-02-27 18:47 - 2023-02-27 18:47 - 002378752 _____ (Farbar) C:\Users\thierry\Desktop\FRST64.exe 2023-02-27 16:23 - 2023-02-27 16:23 - 000523925 _____ C:\Users\thierry\Desktop\ZHPDiag.html 2023-02-27 16:23 - 2023-02-27 16:23 - 000428460 _____ C:\Users\thierry\Desktop\ZHPDiag2.txt 2023-02-27 16:07 - 2023-02-27 16:07 - 000181816 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys 2023-02-27 14:58 - 2023-02-27 14:58 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job 2023-02-27 14:51 - 2023-02-27 14:52 - 013245512 _____ (AVAST Software) C:\Users\thierry\Desktop\avastclear.exe 2023-02-27 13:32 - 2023-02-27 13:32 - 000437365 _____ C:\Users\thierry\Desktop\ZHPDiag.txt 2023-02-27 13:23 - 2023-02-27 13:23 - 000000871 _____ C:\Users\thierry\Desktop\ZHPSuite.lnk 2023-02-27 13:21 - 2023-02-27 13:21 - 003513544 _____ (Nicolas Coolman) C:\Users\thierry\Desktop\ZHPSuite.exe 2023-02-27 10:33 - 2023-02-27 10:33 - 000146228 _____ C:\Users\thierry\Downloads\AttestationDroits-1.pdf 2023-02-25 10:27 - 2023-02-25 10:27 - 000075075 _____ C:\Users\thierry\Downloads\Bouyguestelecom_Facture_20230223-1.pdf 2023-02-25 10:26 - 2023-02-25 10:26 - 000058397 _____ C:\Users\thierry\Downloads\Bouyguestelecom_Facture_20230223.pdf 2023-02-24 13:46 - 2023-02-24 13:46 - 000043773 _____ C:\Users\thierry\Downloads\D230206463_N__Cheptel__41158003_230224113757_CL0.pdf 2023-02-23 13:57 - 2023-02-23 13:57 - 001144359 _____ C:\Users\thierry\Downloads\Documents demandes pour dossier Gigou - Laurenceau(1).eml 2023-02-23 13:56 - 2023-02-23 13:56 - 000047835 _____ C:\Users\thierry\Downloads\Décompte Prestations Retraite-20 février 2023.pdf 2023-02-23 13:55 - 2023-02-23 13:55 - 000047847 _____ C:\Users\thierry\Downloads\Décompte Prestations Retraite-14 février 2023-1.pdf 2023-02-23 13:37 - 2023-02-23 13:38 - 001144359 _____ C:\Users\thierry\Downloads\Documents demandes pour dossier Gigou - Laurenceau.eml 2023-02-22 21:55 - 2023-02-22 21:55 - 000565581 _____ C:\Users\thierry\Downloads\CCF_000218-1--1.pdf 2023-02-22 14:24 - 2023-02-22 14:24 - 000017818 _____ C:\Users\thierry\Downloads\report-1.pdf 2023-02-22 14:15 - 2023-02-22 14:15 - 000017823 _____ C:\Users\thierry\Downloads\report.pdf 2023-02-22 12:34 - 2023-02-22 12:34 - 000565581 _____ C:\Users\thierry\Downloads\CCF_000218-1-.pdf 2023-02-21 21:44 - 2023-02-21 21:44 - 000424056 _____ C:\Users\thierry\Downloads\DOC060123-1.pdf 2023-02-21 21:42 - 2023-02-21 21:42 - 000258743 _____ C:\Users\thierry\Downloads\21 fev 2023.pdf 2023-02-20 22:00 - 2023-02-20 22:00 - 000110204 _____ C:\Users\thierry\Downloads\RIB SELARL CLIENTS-3.pdf 2023-02-20 22:00 - 2023-02-20 22:00 - 000066275 _____ C:\Users\thierry\Downloads\SAFER _ - requisition de notifier par vendeur et acquereur -si pas avant-contrat--4.pdf 2023-02-20 22:00 - 2023-02-20 22:00 - 000037704 _____ C:\Users\thierry\Downloads\Offre dachat - Thierry LAURENCEAU 13_01_23-2.pdf 2023-02-20 21:56 - 2023-02-20 21:56 - 000049053 _____ C:\Users\thierry\Downloads\Votre facture de cotisations Non Salariés - IMPORTANT Veillez à respecter la date limite de règlement (ou de prélèvement) indiquée sur cette facture d'appel fractionné-15 février 2023.pdf 2023-02-20 21:56 - 2023-02-20 21:56 - 000043902 _____ C:\Users\thierry\Downloads\Décompte prestation maladie-16 février 2023.pdf 2023-02-17 22:38 - 2023-02-17 22:38 - 000000000 ____D C:\WINDOWS\system32\spool\prtprocs\x64\6 2023-02-17 10:57 - 2023-02-17 10:57 - 000000000 ___HD C:\$WinREAgent 2023-02-16 22:01 - 2023-02-16 22:01 - 000053121 _____ C:\Users\thierry\Downloads\SATE418_SATE419_merged_rotated-3.pdf 2023-02-16 21:50 - 2023-02-16 21:50 - 000053121 _____ C:\Users\thierry\Downloads\SATE418_SATE419_merged_rotated-2.pdf 2023-02-16 21:41 - 2023-02-16 21:41 - 000053121 _____ C:\Users\thierry\Downloads\SATE418_SATE419_merged_rotated-1.pdf 2023-02-16 21:41 - 2023-02-16 21:41 - 000053121 _____ C:\Users\thierry\Downloads\SATE418_SATE419_merged_rotated.pdf 2023-02-16 21:39 - 2023-02-16 21:39 - 000053178 _____ C:\Users\thierry\Downloads\SATE418_SATE419_merged.pdf 2023-02-16 21:21 - 2023-02-16 21:21 - 000027340 _____ C:\Users\thierry\Downloads\SATE419.pdf 2023-02-16 21:20 - 2023-02-16 21:20 - 000025986 _____ C:\Users\thierry\Downloads\SATE418.pdf 2023-02-16 13:33 - 2023-02-16 13:33 - 000047847 _____ C:\Users\thierry\Downloads\Décompte Prestations Retraite-14 février 2023.pdf 2023-02-15 22:26 - 2023-02-15 22:26 - 000475142 _____ C:\Users\thierry\Downloads\46785B5B5D-4.pdf 2023-02-15 22:26 - 2023-02-15 22:26 - 000475142 _____ C:\Users\thierry\Downloads\46785B5B5D-3.pdf 2023-02-15 13:34 - 2023-02-15 13:35 - 000479618 _____ C:\Users\thierry\Downloads\467A58363D.pdf 2023-02-15 12:25 - 2023-02-15 12:25 - 000475142 _____ C:\Users\thierry\Downloads\46785B5B5D-2.pdf 2023-02-15 12:25 - 2023-02-15 12:25 - 000475142 _____ C:\Users\thierry\Downloads\46785B5B5D-1.pdf 2023-02-15 12:25 - 2023-02-15 12:25 - 000475142 _____ C:\Users\thierry\Downloads\46785B5B5D.pdf 2023-02-15 12:02 - 2023-02-15 22:57 - 000000000 ____D C:\Program Files\Mozilla Firefox 2023-02-14 14:05 - 2023-02-14 14:05 - 000072584 _____ (Avast Software) C:\WINDOWS\system32\Drivers\aswVpnRdr.sys 2023-02-14 13:17 - 2023-02-14 13:17 - 000051324 _____ C:\Users\thierry\Downloads\FVE063892-1.pdf 2023-02-14 12:28 - 2023-02-14 12:28 - 000051324 _____ C:\Users\thierry\Downloads\FVE063892.pdf 2023-02-11 21:40 - 2023-02-11 21:40 - 000015380 _____ C:\Users\thierry\Downloads\justificatif_reglement_avis_33337839243421-1.pdf 2023-02-11 21:28 - 2023-02-11 21:28 - 000393990 _____ C:\Users\thierry\Downloads\MSA413_MSA414_merged-2-1.pdf 2023-02-11 21:28 - 2023-02-11 21:28 - 000321891 _____ C:\Users\thierry\Downloads\Bail Gigou415_merged-1.pdf 2023-02-11 21:27 - 2023-02-11 21:27 - 000089270 _____ C:\Users\thierry\Downloads\safer410-combine-1.pdf 2023-02-11 21:27 - 2023-02-11 21:27 - 000089270 _____ C:\Users\thierry\Downloads\safer410-combine.pdf 2023-02-11 21:27 - 2023-02-11 21:27 - 000025787 _____ C:\Users\thierry\Downloads\cadastre412-1.pdf 2023-02-11 21:25 - 2023-02-11 21:25 - 000321891 _____ C:\Users\thierry\Downloads\Bail Gigou415_merged.pdf 2023-02-11 21:23 - 2023-02-11 21:23 - 000393990 _____ C:\Users\thierry\Downloads\MSA413_MSA414_merged-2.pdf 2023-02-11 21:23 - 2023-02-11 21:23 - 000134950 _____ C:\Users\thierry\Downloads\Bail Gigou417.pdf 2023-02-11 21:21 - 2023-02-11 21:21 - 000035270 _____ C:\Users\thierry\Downloads\Bail Gigou416.pdf 2023-02-11 21:20 - 2023-02-11 21:20 - 000152099 _____ C:\Users\thierry\Downloads\Bail Gigou415.pdf 2023-02-11 21:18 - 2023-02-11 21:18 - 000393990 _____ C:\Users\thierry\Downloads\MSA413_MSA414_merged-1.pdf 2023-02-11 21:18 - 2023-02-11 21:18 - 000393990 _____ C:\Users\thierry\Downloads\MSA413_MSA414_merged.pdf 2023-02-11 21:14 - 2023-02-11 21:14 - 000192795 _____ C:\Users\thierry\Downloads\MSA414.pdf 2023-02-11 21:12 - 2023-02-11 21:12 - 000201344 _____ C:\Users\thierry\Downloads\MSA413.pdf 2023-02-11 21:10 - 2023-02-11 21:10 - 000025787 _____ C:\Users\thierry\Downloads\cadastre412.pdf 2023-02-11 21:08 - 2023-02-11 21:08 - 000089270 _____ C:\Users\thierry\Downloads\safer410-combiné.pdf 2023-02-11 20:58 - 2023-02-11 20:58 - 000025108 _____ C:\Users\thierry\Downloads\safer411.pdf 2023-02-11 20:56 - 2023-02-11 20:56 - 000060735 _____ C:\Users\thierry\Downloads\safer410.pdf 2023-02-11 13:29 - 2023-02-11 13:29 - 000015380 _____ C:\Users\thierry\Downloads\justificatif_reglement_avis_33337839243421.pdf 2023-02-11 13:24 - 2023-02-11 13:24 - 000883762 _____ C:\Users\thierry\Downloads\3783924342_ACOE2.20230209.120200-3.pdf 2023-02-11 13:23 - 2023-02-11 13:23 - 000883762 _____ C:\Users\thierry\Downloads\3783924342_ACOE2.20230209.120200-2.pdf 2023-02-11 13:22 - 2023-02-11 13:22 - 000883762 _____ C:\Users\thierry\Downloads\3783924342_ACOE2.20230209.120200-1.pdf 2023-02-11 13:21 - 2023-02-11 13:21 - 000883762 _____ C:\Users\thierry\Downloads\3783924342_ACOE2.20230209.120200.pdf 2023-02-11 10:48 - 2023-02-11 10:48 - 000127504 _____ C:\Users\thierry\Downloads\Certiphyto381-3-3.pdf 2023-02-10 22:27 - 2023-02-10 22:27 - 000215032 _____ C:\Users\thierry\Downloads\EP_COND12_1674487834635.pdf 2023-02-10 22:26 - 2023-02-10 22:26 - 000085721 _____ C:\Users\thierry\Downloads\AUTORIS_PRLVT_COND12_1674487839696.pdf 2023-02-10 22:13 - 2023-02-10 22:13 - 000127504 _____ C:\Users\thierry\Downloads\Certiphyto381-3-2.pdf 2023-02-10 22:10 - 2023-02-10 22:10 - 000127504 _____ C:\Users\thierry\Downloads\Certiphyto381-3-1.pdf 2023-02-10 22:09 - 2023-02-10 22:09 - 000127504 _____ C:\Users\thierry\Downloads\Certiphyto381-3.pdf 2023-02-10 22:09 - 2023-02-10 22:09 - 000091689 _____ C:\Users\thierry\Downloads\Stocks et verification local phyto 31.07.2022-1.pdf 2023-02-10 22:08 - 2023-02-10 22:08 - 000690796 _____ C:\Users\thierry\Downloads\LAURENCEAU_THIERRY-2-1.pdf 2023-02-10 21:56 - 2023-02-10 21:56 - 000066275 _____ C:\Users\thierry\Downloads\SAFER _ - requisition de notifier par vendeur et acquereur -si pas avant-contrat--3.pdf 2023-02-10 21:54 - 2023-02-10 21:54 - 000110204 _____ C:\Users\thierry\Downloads\RIB SELARL CLIENTS-2.pdf 2023-02-10 13:14 - 2023-02-10 13:14 - 000110204 _____ C:\Users\thierry\Downloads\RIB SELARL CLIENTS-1.pdf 2023-02-10 13:13 - 2023-02-10 13:13 - 000037704 _____ C:\Users\thierry\Downloads\Offre dachat - Thierry LAURENCEAU 13_01_23-1.pdf 2023-02-10 13:10 - 2023-02-10 13:10 - 000066275 _____ C:\Users\thierry\Downloads\SAFER _ - requisition de notifier par vendeur et acquereur -si pas avant-contrat--2.pdf 2023-02-10 10:30 - 2023-02-10 10:30 - 000066275 _____ C:\Users\thierry\Downloads\SAFER _ - requisition de notifier par vendeur et acquereur -si pas avant-contrat--1.pdf 2023-02-10 10:29 - 2023-02-10 10:29 - 000110204 _____ C:\Users\thierry\Downloads\RIB SELARL CLIENTS.pdf 2023-02-10 10:29 - 2023-02-10 10:29 - 000037704 _____ C:\Users\thierry\Downloads\Offre dachat - Thierry LAURENCEAU 13_01_23.pdf 2023-02-10 10:26 - 2023-02-10 10:26 - 000066275 _____ C:\Users\thierry\Downloads\SAFER _ - requisition de notifier par vendeur et acquereur -si pas avant-contrat-.pdf 2023-02-09 22:30 - 2023-02-09 22:30 - 000909126 _____ C:\Users\thierry\Downloads\Com_BACUS-TELECALAMUS_VF.pdf 2023-02-09 22:29 - 2023-02-09 22:29 - 000085086 _____ C:\Users\thierry\Downloads\cerfa_13951-02.pdf 2023-02-09 22:28 - 2023-02-09 22:28 - 000189125 _____ C:\Users\thierry\Downloads\cerfa_13681-03.pdf 2023-02-09 22:07 - 2023-02-09 22:07 - 000690796 _____ C:\Users\thierry\Downloads\LAURENCEAU_THIERRY-2.pdf 2023-02-09 22:05 - 2023-02-09 22:05 - 000690796 _____ C:\Users\thierry\Downloads\LAURENCEAU_THIERRY-1.pdf 2023-02-09 22:01 - 2023-02-09 22:01 - 000241454 _____ C:\Users\thierry\Downloads\Facture_EDF_10166477777.pdf 2023-02-09 13:29 - 2023-02-09 13:29 - 000690796 _____ C:\Users\thierry\Downloads\LAURENCEAU_THIERRY.pdf 2023-02-08 21:48 - 2023-02-08 21:48 - 000275074 _____ C:\Users\thierry\Downloads\23_Tract_V2_Optimiser_qualite_pulverisation.pdf 2023-02-08 19:43 - 2023-02-08 19:43 - 000070101 _____ C:\Users\thierry\Downloads\EDE409-2.pdf 2023-02-08 19:42 - 2023-02-08 19:42 - 000070101 _____ C:\Users\thierry\Downloads\EDE409-1.pdf 2023-02-08 19:40 - 2023-02-08 19:40 - 000070101 _____ C:\Users\thierry\Downloads\EDE409.pdf 2023-02-07 22:42 - 2023-02-07 22:42 - 000129864 _____ C:\Users\thierry\Downloads\3783924342_FRE_20230207_224215.PDF 2023-02-07 20:33 - 2023-02-07 20:33 - 000023299 _____ C:\Users\thierry\Downloads\ticket_de_caisse.pdf 2023-02-07 14:06 - 2023-02-07 14:06 - 000156729 _____ C:\Users\thierry\Downloads\bareme cultures-1.pdf 2023-02-07 14:06 - 2023-02-07 14:06 - 000019210 _____ C:\Users\thierry\Downloads\cultures sinistrees-1.pdf 2023-02-07 14:05 - 2023-02-07 14:05 - 000051415 _____ C:\Users\thierry\Downloads\bareme animaux-1.pdf 2023-02-07 14:05 - 2023-02-07 14:05 - 000045677 _____ C:\Users\thierry\Downloads\85 communes sinistrees-1.pdf 2023-02-07 14:03 - 2023-02-07 14:03 - 000185193 _____ C:\Users\thierry\Downloads\ReleveMensuelNovembre2022-1.pdf 2023-02-07 14:02 - 2023-02-07 14:02 - 000175781 _____ C:\Users\thierry\Downloads\ReleveMensuelSeptembre2022-1.pdf 2023-02-07 14:01 - 2023-02-07 14:01 - 000175265 _____ C:\Users\thierry\Downloads\ReleveMensuelAout2022-3.pdf 2023-02-07 14:00 - 2023-02-07 14:00 - 000172229 _____ C:\Users\thierry\Downloads\ReleveMensuelJuin2022-2.pdf 2023-02-07 14:00 - 2023-02-07 14:00 - 000171823 _____ C:\Users\thierry\Downloads\ReleveMensuelMai2022-1.pdf 2023-02-07 13:59 - 2023-02-07 13:59 - 000172538 _____ C:\Users\thierry\Downloads\ReleveMensuelAvril2022-1.pdf 2023-02-07 13:59 - 2023-02-07 13:59 - 000171524 _____ C:\Users\thierry\Downloads\ReleveMensuelMars2022-2.pdf 2023-02-07 13:57 - 2023-02-07 13:57 - 000172205 _____ C:\Users\thierry\Downloads\ReleveMensuelFevrier2022-1.pdf 2023-02-06 21:44 - 2023-02-06 21:44 - 000019210 _____ C:\Users\thierry\Downloads\cultures sinistrees.pdf 2023-02-06 21:43 - 2023-02-06 21:44 - 000156729 _____ C:\Users\thierry\Downloads\bareme cultures.pdf 2023-02-06 21:42 - 2023-02-06 21:42 - 000051415 _____ C:\Users\thierry\Downloads\bareme animaux.pdf 2023-02-06 21:41 - 2023-02-06 21:41 - 000045677 _____ C:\Users\thierry\Downloads\85 communes sinistrees.pdf 2023-02-05 19:01 - 2023-02-05 19:01 - 000014022 _____ C:\Users\thierry\Downloads\AccuseReception_LB_2022_21357_C21357_RIR_FGenPre.pdf 2023-02-05 18:47 - 2023-02-05 18:47 - 000384813 _____ C:\Users\thierry\Downloads\Formulaire_LB_2022_21357_C21357_RIR_FGenPre-1.pdf 2023-02-05 18:44 - 2023-02-05 18:44 - 000316022 _____ C:\Users\thierry\Downloads\Formulaire_LB_2022_21357_C21357_RIR_FGenPre.pdf 2023-02-04 21:45 - 2023-02-04 21:45 - 000157650 _____ C:\Users\thierry\Downloads\ass 406-2.pdf 2023-02-03 22:26 - 2023-02-03 22:26 - 000157650 _____ C:\Users\thierry\Downloads\ass 406-1.pdf 2023-02-03 22:25 - 2023-02-03 22:25 - 000157650 _____ C:\Users\thierry\Downloads\ass 406.pdf 2023-02-03 21:53 - 2023-02-03 21:53 - 000366182 _____ C:\Users\thierry\Downloads\20230128_SIGEHAV003_AVISDOPERATION_PVL49101906427-3.pdf 2023-02-03 18:31 - 2023-02-03 18:31 - 000268395 _____ C:\Users\thierry\Downloads\THEBAULT_Sylvie Dominique Suzanne_Récapitulatif Simulation_03-02-2023 18 31 42.pdf 2023-01-31 12:18 - 2023-01-31 12:18 - 005674750 _____ C:\Users\thierry\Downloads\RDV et ordonnances Sylvie Thebault-11.pdf 2023-01-31 11:49 - 2023-01-31 11:50 - 000366182 _____ C:\Users\thierry\Downloads\20230128_SIGEHAV003_AVISDOPERATION_PVL49101906427-2.pdf 2023-01-30 13:05 - 2023-01-30 13:05 - 000366182 _____ C:\Users\thierry\Downloads\20230128_SIGEHAV003_AVISDOPERATION_PVL49101906427-1.pdf 2023-01-30 10:57 - 2023-01-30 10:57 - 000366182 _____ C:\Users\thierry\Downloads\20230128_SIGEHAV003_AVISDOPERATION_PVL49101906427.pdf 2023-01-29 14:41 - 2023-01-29 14:41 - 005674750 _____ C:\Users\thierry\Downloads\RDV et ordonnances Sylvie Thebault-10.pdf 2023-01-28 21:34 - 2023-01-28 21:34 - 000280755 _____ C:\Users\thierry\Downloads\Billet Thierry 15 03 23 Aller retour.pdf 2023-01-28 21:33 - 2023-01-28 21:33 - 000189406 _____ C:\Users\thierry\Downloads\Billet Sylvie 03 04 2023.pdf ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2023-02-27 18:48 - 2021-05-31 19:57 - 000000000 ____D C:\Users\thierry\AppData\LocalLow\IGDump 2023-02-27 18:46 - 2017-09-13 09:46 - 000000000 ____D C:\Program Files (x86)\Google 2023-02-27 18:46 - 2016-12-29 20:49 - 000000000 ____D C:\Users\thierry\AppData\LocalLow\Mozilla 2023-02-27 18:45 - 2022-02-09 11:39 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2023-02-27 18:45 - 2018-01-03 19:03 - 000000000 ____D C:\Program Files\CCleaner 2023-02-27 18:43 - 2016-12-27 13:33 - 000000000 __SHD C:\Users\thierry\IntelGraphicsProfiles 2023-02-27 16:28 - 2022-12-07 16:48 - 000000000 ____D C:\Users\thierry\Desktop\annonces 2023-02-27 16:28 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2023-02-27 16:23 - 2022-12-07 18:18 - 000000000 ____D C:\Users\thierry\AppData\Roaming\ZHP 2023-02-27 16:09 - 2019-09-13 11:40 - 000803176 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2023-02-27 16:07 - 2022-10-10 10:02 - 000239544 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2023-02-27 16:07 - 2015-09-07 16:58 - 000000000 ____D C:\ProgramData\AVAST Software 2023-02-27 16:06 - 2022-12-15 14:05 - 000004028 _____ C:\WINDOWS\system32\Tasks\Avast SecureLine VPN Update 2023-02-27 16:06 - 2020-10-31 23:23 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2023-02-27 16:06 - 2020-10-31 23:02 - 000008192 ___SH C:\DumpStack.log.tmp 2023-02-27 16:06 - 2018-04-11 19:36 - 000000000 ____D C:\Users\thierry\AppData\Local\AVAST Software 2023-02-27 16:06 - 2015-09-07 16:58 - 000000000 ____D C:\Program Files\AVAST Software 2023-02-27 16:05 - 2020-10-31 23:03 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2023-02-27 16:05 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2023-02-27 15:00 - 2018-12-03 18:01 - 000000000 ____D C:\Users\thierry\AppData\Local\D3DSCache 2023-02-27 14:58 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2023-02-27 10:55 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2023-02-27 10:55 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2023-02-27 10:18 - 2020-07-05 18:47 - 000002446 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2023-02-27 10:18 - 2020-07-05 18:47 - 000002284 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2023-02-27 09:53 - 2022-09-20 20:31 - 000000760 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job 2023-02-26 19:11 - 2016-12-27 20:02 - 000000000 ____D C:\Users\thierry\AppData\Local\CrashDumps 2023-02-26 18:53 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2023-02-24 21:18 - 2022-10-16 09:24 - 000003046 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting 2023-02-24 21:18 - 2021-12-11 22:09 - 000003062 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-713585273-3206071512-1856339584-1001 2023-02-24 21:18 - 2021-08-19 08:51 - 000002256 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - thierry 2023-02-24 21:18 - 2020-10-31 23:23 - 000004302 _____ C:\WINDOWS\system32\Tasks\Software Update Application 2023-02-24 21:18 - 2020-10-31 23:23 - 000003852 _____ C:\WINDOWS\system32\Tasks\ACCAgent 2023-02-24 21:18 - 2020-10-31 23:23 - 000003618 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2023-02-24 21:18 - 2020-10-31 23:23 - 000003518 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2023-02-24 21:18 - 2020-10-31 23:23 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2023-02-24 21:18 - 2020-10-31 23:23 - 000003394 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2023-02-24 21:18 - 2020-10-31 23:23 - 000003294 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2023-02-24 21:18 - 2020-10-31 23:23 - 000002988 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2023-02-24 21:18 - 2020-10-31 23:23 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-713585273-3206071512-1856339584-1001 2023-02-24 21:18 - 2020-10-31 23:23 - 000002820 _____ C:\WINDOWS\system32\Tasks\ACC 2023-02-24 21:18 - 2020-10-31 23:23 - 000002762 _____ C:\WINDOWS\system32\Tasks\BacKGroundAgent 2023-02-24 21:18 - 2020-10-31 23:23 - 000002704 _____ C:\WINDOWS\system32\Tasks\AcerDriveProxyLauncher 2023-02-24 21:18 - 2020-10-31 23:23 - 000002550 _____ C:\WINDOWS\system32\Tasks\abDocsDllLoader 2023-02-24 21:18 - 2020-10-31 23:23 - 000002548 _____ C:\WINDOWS\system32\Tasks\AcerDriveTrayLauncher 2023-02-24 21:18 - 2020-10-31 23:23 - 000002546 _____ C:\WINDOWS\system32\Tasks\AcerDriveUpdateChecker 2023-02-24 21:18 - 2020-10-31 23:23 - 000002328 _____ C:\WINDOWS\system32\Tasks\ACCBackgroundApplication 2023-02-24 21:18 - 2020-10-31 23:23 - 000002326 _____ C:\WINDOWS\system32\Tasks\{8ADFCAE4-D012-46CB-8298-357BC05E8CE7} 2023-02-24 21:18 - 2020-10-31 23:23 - 000002180 _____ C:\WINDOWS\system32\Tasks\Quick Access 2023-02-24 21:18 - 2020-10-31 23:23 - 000002074 _____ C:\WINDOWS\system32\Tasks\FUBTrackingByPLD 2023-02-24 21:18 - 2020-10-31 23:23 - 000000000 ____D C:\WINDOWS\system32\Tasks\AVAST Software 2023-02-24 20:56 - 2020-10-31 23:06 - 000002427 _____ C:\Users\thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2023-02-24 13:38 - 2017-03-29 21:13 - 000015271 _____ C:\Users\thierry\Documents\facture boucher.odt 2023-02-23 12:56 - 2017-12-25 10:32 - 000000000 ____D C:\Users\thierry\AppData\Local\Packages 2023-02-21 19:45 - 2020-10-31 23:23 - 000003990 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update 2023-02-21 19:44 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2023-02-18 12:00 - 2020-10-31 23:17 - 001770910 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2023-02-18 12:00 - 2019-12-07 15:49 - 000791762 _____ C:\WINDOWS\system32\perfh00C.dat 2023-02-18 12:00 - 2019-12-07 15:49 - 000149928 _____ C:\WINDOWS\system32\perfc00C.dat 2023-02-17 22:36 - 2020-10-31 23:02 - 000539096 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2023-02-17 22:33 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2023-02-17 22:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2023-02-17 22:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources 2023-02-17 22:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup 2023-02-17 22:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2023-02-17 22:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\DDFs 2023-02-17 22:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2023-02-17 21:32 - 2022-10-12 11:46 - 000002077 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk 2023-02-17 21:32 - 2022-10-12 11:46 - 000002065 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk 2023-02-17 11:34 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2023-02-15 22:57 - 2018-10-17 12:32 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2023-02-15 22:14 - 2020-10-31 23:06 - 003015680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2023-02-15 12:40 - 2017-01-11 12:43 - 000000000 ____D C:\WINDOWS\system32\MRT 2023-02-15 12:32 - 2016-12-27 18:45 - 149955784 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2023-02-15 12:15 - 2021-07-24 15:48 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2023-02-15 12:15 - 2018-10-17 12:32 - 000001009 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2023-02-06 21:34 - 2018-04-11 19:39 - 000002500 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Secure Browser.lnk ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================