Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 27-02-2023 Exécuté par Utilisateur (administrateur) sur UC00008 (Notebook NV4XMB,ME,MZ) (02-03-2023 12:35:00) Exécuté depuis C:\Users\Utilisateur\Desktop Profils chargés: Utilisateur & SQLTELEMETRY$SQLEXPRESS & SQLTELEMETRY & MSSQL$SQLEXPRESS & MSSQLSERVER Plate-forme: Microsoft Windows 10 Professionnel Version 22H2 19045.2604 (X64) Langue: Français (France) Navigateur par défaut: FF Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (C:\Program Files (x86)\FreeCommander XE\FreeCommander.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe (C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe (C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eOppFrame.exe (C:\Program Files\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\modules\AlwaysOnTop\PowerToys.AlwaysOnTop.exe (C:\Program Files\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\modules\Awake\PowerToys.Awake.exe (C:\Program Files\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\modules\ColorPicker\PowerToys.ColorPickerUI.exe (C:\Program Files\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\modules\FancyZones\PowerToys.FancyZones.exe (C:\Program Files\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\modules\KeyboardManager\KeyboardManagerEngine\PowerToys.KeyboardManagerEngine.exe (C:\Program Files\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\modules\launcher\PowerToys.PowerLauncher.exe (C:\Program Files\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\modules\PowerAccent\PowerToys.PowerAccent.exe (C:\Program Files\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\modules\PowerOCR\PowerToys.PowerOCR.exe (DriverStore\FileRepository\cui_dch.inf_amd64_71cc42bf8b620f67\igfxCUIServiceN.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_71cc42bf8b620f67\igfxEMN.exe (explorer.exe ->) () [Fichier non signé] C:\Program Files (x86)\notepad2_4.2.25_x64\Notepad2.exe (explorer.exe ->) () [Fichier non signé] C:\Projets Visual Studio\WinForms\ListIrfanView\ListIrfanView\bin\Debug\ListIrfanView.exe (explorer.exe ->) () [Fichier non signé] D:\Projects Visual Studio\Winform\AirboxBattery1\AirboxBattery1\bin\Debug\AirboxBattery1.exe (explorer.exe ->) () [Fichier non signé] D:\Projects Visual Studio\Winform\LaSonnaille\LaSonnaille\bin\Debug\LaSonnaille.exe (explorer.exe ->) () [Fichier non signé] D:\Projects Visual Studio\Winform\SelectReminder\SelectReminder\bin\Debug\SelectReminder.exe (explorer.exe ->) (Binary Fortress Software Ltd -> Binary Fortress Software) C:\Program Files (x86)\TrayStatus\TrayStatus.exe (explorer.exe ->) (INTEL CORP) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.4478.0_x64__8j3eq9eme6ctt\GCP.ML.BackgroundSysTray\IGCCTray.exe (explorer.exe ->) (Marek Jasinski -> Marek Jasinski) C:\Program Files (x86)\FreeCommander XE\FCWinERedirect.exe (explorer.exe ->) (Marek Jasinski -> Marek Jasinski) C:\Program Files (x86)\FreeCommander XE\FreeCommander.exe (explorer.exe ->) (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Thunderbird\thunderbird.exe <8> (explorer.exe ->) (NGWIN Software co. -> NGWIN) C:\Program Files (x86)\PicPick\picpick.exe (explorer.exe ->) (winMenu) [Fichier non signé] C:\Projets Visual Studio\WinForms\winMenu\winMenu\bin\Debug\net6.0-windows\winMenu.exe (Microsoft Windows -> ) C:\Windows\System32\EoAExperiences.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <49> (Mozilla) [Fichier non signé] D:\Telechargements\Sunbird\sunbird\sunbird.exe (Pawsoft) [Fichier non signé] C:\Program Files (x86)\Pawsoft\Pawclock\Pawclock.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (CHENGDU YIWO Tech Development Co., Ltd. -> ) C:\Program Files (x86)\EaseUS\ENS\ensserver.exe (services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe (services.exe ->) (FOXIT SOFTWARE INC. -> Foxit Software Inc.) C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\FoxitPDFReaderUpdateService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\TbtP2pShortcutService.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe (services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_71cc42bf8b620f67\igfxCUIServiceN.exe (services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_4789e47f6228caeb\OneApp.IGCC.WinService.exe (services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_23a1c1315f01c788\IntelCpHDCPSvc.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS\MSSQL\Binn\sqlceip.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS\MSSQL\Binn\sqlservr.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL15.MSSQLSERVER\MSSQL\Binn\sqlceip.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL15.MSSQLSERVER\MSSQL\Binn\sqlservr.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe <2> (services.exe ->) (philandro Software GmbH -> AnyDesk Software GmbH) C:\Program Files (x86)\AnyDesk\AnyDesk.exe <2> (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_719a4f3eb3c3c65a\RtkAudUService64.exe <2> (services.exe ->) (voidtools -> voidtools) C:\Program Files\Everything\Everything.exe <2> (svchost.exe ->) (INTEL CORP) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.4478.0_x64__8j3eq9eme6ctt\IGCC.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\PowerToys.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.BingWeather_4.53.43112.0_x64__8wekyb3d8bbwe\Microsoft.Msn.Weather.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_11.2210.0.0_x64__8wekyb3d8bbwe\CalculatorApp.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.23012.167.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe (zailes.org) [Fichier non signé] D:\Projects Visual Studio\Winform\TrayMinimizer1\Tray minimizer\bin\Debug\Tray minimizer.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [KeePass 2 PreLoad] => C:\Program Files\KeePass Password Safe 2\KeePass.exe [3216784 2022-09-09] (Open Source Developer, Dominik Reichl -> Dominik Reichl) HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_719a4f3eb3c3c65a\RtkAudUService64.exe [1588048 2022-08-22] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [194704 2023-01-16] (ESET, spol. s r.o. -> ESET) HKLM\...\Run: [Everything] => C:\Program Files\Everything\Everything.exe [2260560 2021-01-25] (voidtools -> voidtools) HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION HKU\S-1-5-21-962550837-704519019-1221734790-1001\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [123150752 2022-10-27] (Skype Software Sarl -> Skype Technologies S.A.) HKU\S-1-5-21-962550837-704519019-1221734790-1001\...\Run: [TrayStatus] => C:\Program Files (x86)\TrayStatus\TrayStatus.exe [2943952 2021-12-14] (Binary Fortress Software Ltd -> Binary Fortress Software) HKU\S-1-5-21-962550837-704519019-1221734790-1001\...\Run: [FreeCommanderWinEHook] => C:\Program Files (x86)\FreeCommander XE\FreeCommander.exe [28196736 2022-02-11] (Marek Jasinski -> Marek Jasinski) HKU\S-1-5-21-962550837-704519019-1221734790-1001\...\Run: [Opera Browser Assistant] => C:\Users\Utilisateur\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [3916232 2022-12-20] (Opera Norway AS -> Opera Software) HKU\S-1-5-21-962550837-704519019-1221734790-1001\...\Run: [PicPick Start] => C:\Program Files (x86)\PicPick\picpick.exe [33007152 2022-12-24] (NGWIN Software co. -> NGWIN) HKU\S-1-5-21-962550837-704519019-1221734790-1001\...\Run: [MicrosoftEdgeAutoLaunch_214C468C1C6DF33CE795C9511217D27D] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4243408 2023-02-25] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-962550837-704519019-1221734790-1001\...\RunOnce: [Application Restart #0] => C:\Program Files\Microsoft Visual Studio\2022\Community\Common7\IDE\devenv.exe [1004480 2023-01-25] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-962550837-704519019-1221734790-1001\...\MountPoints2: {212f1811-b324-11ed-b26f-14857f0b0efe} - "E:\AutoRun.exe" HKU\S-1-5-21-962550837-704519019-1221734790-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> D:\Scripts\ECRAN.SCR [35 2021-06-15] () [Fichier non signé] Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AnyDesk.lnk [2022-11-11] ShortcutTarget: AnyDesk.lnk -> C:\Program Files (x86)\AnyDesk\AnyDesk.exe (philandro Software GmbH -> AnyDesk Software GmbH) Startup: C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\AirboxBattery1.exe - Raccourci.lnk [2022-11-21] ShortcutTarget: AirboxBattery1.exe - Raccourci.lnk -> D:\Projects Visual Studio\Winform\AirboxBattery1\AirboxBattery1\bin\Debug\AirboxBattery1.exe () [Fichier non signé] Startup: C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\LaSonnaille.exe - Raccourci.lnk [2022-02-15] ShortcutTarget: LaSonnaille.exe - Raccourci.lnk -> D:\Projects Visual Studio\Winform\LaSonnaille\LaSonnaille\bin\Debug\LaSonnaille.exe () [Fichier non signé] Startup: C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\LaunchSunbird.lnk [2022-11-15] ShortcutTarget: LaunchSunbird.lnk -> D:\Scripts1\Asynch.exe () [Fichier non signé] Startup: C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\pawclock.cmd - Raccourci.lnk [2022-11-21] ShortcutAndArgument: pawclock.cmd - Raccourci.lnk -> C:\Scripts\pawclock.cmd => Startup: C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SelectReminder.exe.lnk [2022-11-16] ShortcutTarget: SelectReminder.exe.lnk -> D:\Projects Visual Studio\Winform\SelectReminder\SelectReminder\bin\Debug\SelectReminder.exe () [Fichier non signé] Startup: C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\winMenu.exe - Raccourci.lnk [2022-11-28] ShortcutTarget: winMenu.exe - Raccourci.lnk -> C:\Projets Visual Studio\WinForms\winMenu\winMenu\bin\Debug\net6.0-windows\winMenu.exe (winMenu) [Fichier non signé] HKLM\SOFTWARE\Policies\Microsoft\Edge: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {0BE682E8-95B8-409C-846C-02C143361EDF} - System32\Tasks\Microsoft\Windows\Registry\OOBE-Maintenance => C:\Windows\system32\OOBE-Maintenance.exe [102784 2023-01-17] (Microsoft Windows -> Microsoft Corporation) Task: {10D888C3-5702-4760-8630-EBB26DD03317} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1560056 2023-02-01] (Adobe Inc. -> Adobe Inc.) Task: {1F12A6C1-1576-419E-A532-1DC72EFC4A56} - System32\Tasks\Opera scheduled Autoupdate 1669561262 => C:\Users\Utilisateur\AppData\Local\Programs\Opera\launcher.exe [2635208 2023-02-08] (Opera Norway AS -> Opera Software) Task: {3E6DF970-BAC4-4EC8-896C-078A5C4E277E} - System32\Tasks\Microsoft\VisualStudio\Updates\UpdateConfiguration_S-1-5-80-1985561900-798682989-2213159822-1904180398-3434236965 => C:\Program Files (x86)\Microsoft Visual Studio\Installer\resources\app\ServiceHub\Services\Microsoft.VisualStudio.Setup.Service\VSIXConfigurationUpdater.exe [25536 2023-01-18] (Microsoft Corporation -> Microsoft) Task: {4054822B-9ABD-4C51-8C8C-99C6E97149F6} - System32\Tasks\Microsoft\VisualStudio\VSIX Auto Update => C:\Program Files (x86)\Microsoft Visual Studio\Installer\resources\app\ServiceHub\Services\Microsoft.VisualStudio.Setup.Service\VSIXAutoUpdate.exe [50096 2023-01-18] (Microsoft Corporation -> ) Task: {5B986016-4B42-41D6-98AA-822231309E51} - System32\Tasks\PowerToys\Autorun for Utilisateur => C:\Program Files\PowerToys\PowerToys.exe [1091008 2023-02-07] (Microsoft Corporation -> Microsoft Corporation) Task: {5F495003-929C-4AA2-B519-6CD1CBE4E7BA} - System32\Tasks\Microsoft\VisualStudio\Updates\UpdateConfiguration_S-1-5-80-2652535364-2169709536-2857650723-2622804123-1107741775 => C:\Program Files (x86)\Microsoft Visual Studio\Installer\resources\app\ServiceHub\Services\Microsoft.VisualStudio.Setup.Service\VSIXConfigurationUpdater.exe [25536 2023-01-18] (Microsoft Corporation -> Microsoft) Task: {67FF75F8-ADFF-4130-AC6F-D7F7F485C013} - System32\Tasks\VivaldiUpdateCheck-09fce57e152e3e2e => C:\Users\Utilisateur\AppData\Local\Vivaldi\Application\update_notifier.exe [3471760 2023-02-23] (Vivaldi Technologies AS -> Vivaldi Technologies AS) Task: {691A4C27-FAE3-426C-8972-F7EB2127EE21} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [716704 2023-02-27] (Mozilla Corporation -> Mozilla Foundation) Task: {6F111BF4-8546-455D-BF0F-A4076F69382F} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [674720 2023-02-27] (Mozilla Corporation -> Mozilla Corporation) -> --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {860AD129-66B6-4F75-8A60-740F29FA5B43} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\Windows\explorer.exe [5253864 2023-02-16] (Microsoft Windows -> Microsoft Corporation) Task: {86B428C5-638A-43F0-93D8-ADC073011039} - System32\Tasks\Opera scheduled assistant Autoupdate 1669561271 => C:\Users\Utilisateur\AppData\Local\Programs\Opera\launcher.exe [2635208 2023-02-08] (Opera Norway AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\Utilisateur\AppData\Local\Programs\Opera\assistant" $(Arg0) Task: {8A599411-F8BD-4E28-880B-5202D3891B1C} - System32\Tasks\infatica_p2b => C:\Program Files (x86)\Infatica P2B\infatica-service-app.exe [20072 2021-12-04] (Infatica pte ltd -> ) Task: {97F885A0-D622-4F0A-A5F8-23D8CC14E6E7} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2113024 2023-02-12] () [Fichier non signé] Task: {9B0B73F8-3FC8-4837-91E7-0E3762D99852} - System32\Tasks\user\Réveil => C:\Projets Visual Studio\Console\consOptPawclock\consOptPawclock\bin\Debug\consOptPawclock.exe [9216 2022-11-24] () [Fichier non signé] Task: {AB44344B-C08D-43E0-BE2C-5E85C7E48F4D} - System32\Tasks\Microsoft\VisualStudio\Updates\UpdateConfiguration_S-1-5-80-3880718306-3832830129-1677859214-2598158968-1052248003 => C:\Program Files (x86)\Microsoft Visual Studio\Installer\resources\app\ServiceHub\Services\Microsoft.VisualStudio.Setup.Service\VSIXConfigurationUpdater.exe [25536 2023-01-18] (Microsoft Corporation -> Microsoft) Task: {C898C929-8924-4618-8F0D-64ED860C89DB} - System32\Tasks\Microsoft\VisualStudio\Updates\BackgroundDownload => C:\Program Files (x86)\Microsoft Visual Studio\Installer\resources\app\ServiceHub\Services\Microsoft.VisualStudio.Setup.Service\BackgroundDownload.exe [73648 2023-01-18] (Microsoft Corporation -> Microsoft) Task: {C8CBC7AB-5B0E-458F-9047-6E43357B17B9} - System32\Tasks\Microsoft\VisualStudio\Updates\UpdateConfiguration_S-1-5-80-3880006512-4290199581-1648723128-3569869737-3631323133 => C:\Program Files (x86)\Microsoft Visual Studio\Installer\resources\app\ServiceHub\Services\Microsoft.VisualStudio.Setup.Service\VSIXConfigurationUpdater.exe [25536 2023-01-18] (Microsoft Corporation -> Microsoft) Task: {EBB1E5DD-6845-43E4-BE66-E51C97541201} - System32\Tasks\NCH Software\PixillionSevenDays => C:\Program Files (x86)\NCH Software\Pixillion\Pixillion.exe [2853600 2023-02-19] (NCH Software, Inc. -> NCH Software) Task: {F8715EAE-ACE7-428B-B9F5-C0D550154D2D} - System32\Tasks\NCH Software\DebutDowngrade => C:\Program Files (x86)\NCH Software\Debut\debut.exe [5053144 2022-12-07] (NCH Software, Inc. -> NCH Software) Task: {F8765061-AE1A-4503-9441-8DFD2697242B} - System32\Tasks\Microsoft\VisualStudio\Updates\UpdateConfiguration_S-1-5-21-962550837-704519019-1221734790-1001 => C:\Program Files (x86)\Microsoft Visual Studio\Installer\resources\app\ServiceHub\Services\Microsoft.VisualStudio.Setup.Service\VSIXConfigurationUpdater.exe [25536 2023-01-18] (Microsoft Corporation -> Microsoft) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{0ed834be-ae89-4b67-a21e-052cc7ae7c23}: [DhcpNameServer] 1.1.1.1 8.8.8.8 Tcpip\..\Interfaces\{5b9f9438-ed38-403a-890a-b3504df67862}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{b87202d1-a6c9-45f4-9790-639045903316}: [DhcpNameServer] 192.168.137.129 Edge: ======= Edge Profile: C:\Users\Utilisateur\AppData\Local\Microsoft\Edge\User Data\Default [2023-03-01] Edge StartupUrls: Default -> "hxxps://www.google.fr/" FireFox: ======== FF DefaultProfile: cskccknd.default FF ProfilePath: C:\Users\Utilisateur\AppData\Roaming\Mozilla\Sunbird\Profiles\q26x7by0.default [2023-03-01] FF Extension: (Timezone Definitions for Mozilla Calendar) - D:\Telechargements\Sunbird\sunbird\extensions\calendar-timezones@mozilla.org [2021-03-24] [] [non signé] FF Extension: (Lightning stub extension for Sunbird) - D:\Telechargements\Sunbird\sunbird\extensions\{e2fda1a4-762b-4020-b5ad-a41df1933103} [2021-03-24] [] [non signé] FF ProfilePath: D:\Profil Firefox [2022-11-11] FF Extension: (Ant Video downloader) - D:\Profil Firefox\Extensions\anttoolbar@ant.com.xpi [2021-08-16] FF Extension: (Startpage.com - recherche privé) - D:\Profil Firefox\Extensions\{20fc2e06-e3e4-4b2b-812b-ab431220cada}.xpi [2021-08-16] FF Extension: (HTTP Status Code) - D:\Profil Firefox\Extensions\{631f0d87-7b05-4ef7-8c28-70dd22c32e62}.xpi [2021-08-16] FF ProfilePath: C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\cskccknd.default [2023-02-18] FF ProfilePath: C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\1uru2wzf.default-release [2023-02-18] FF Extension: (Ant Video downloader) - C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\1uru2wzf.default-release\Extensions\anttoolbar@ant.com.xpi [2022-11-11] FF Extension: (Simage) - C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\1uru2wzf.default-release\Extensions\LDSMGweb_plashcor@gmail.com.xpi [2022-11-11] FF ProfilePath: D:\Profil Firefox Juillet 2021 - 2 [2022-11-16] FF ProfilePath: D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox [2022-11-16] FF DownloadDir: D:\Téléchargements FF Notifications: D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox -> hxxps://urbanwomanmag.com; hxxps://fr.xhamsterlive.com; hxxps://caledosphere.com; hxxps://fr.lebisou.com; hxxps://plugnworkmetz.en-virtuel.fr; hxxps://txxx.com; hxxps://pierrecassen.com; hxxps://moovijobday.en-virtuel.lu; hxxps://forum.clubic.com; hxxps://lyon.citycrunch.fr; hxxps://github.community; hxxps://horny-honey.online; hxxps://discourse.mozilla.org FF Extension: (Grammarly for Firefox) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\87677a2c52b84ad3a151a4a72f5bd3c4@jetpack.xpi [2020-09-15] FF Extension: (Signal Spam) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\@addonsignalspam.xpi [2020-10-06] FF Extension: (Fit To Width) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\@fittowidth.xpi [2021-04-20] FF Extension: (English United States Dictionary) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\@unitedstatesenglishdictionary.xpi [2021-03-28] FF Extension: (AdBlocker Ultimate) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\adblockultimate@adblockultimate.net.xpi [2020-11-20] FF Extension: (AdGuard AdBlocker) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\adguardadblocker@adguard.com.xpi [2021-05-07] FF Extension: (Ant Video downloader) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\anttoolbar@ant.com.xpi [2020-08-19] FF Extension: (Castorus) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\contact@castorus.com.xpi [2021-04-16] FF Extension: (Cookie AutoDelete) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\CookieAutoDelete@kennydo.com.xpi [2020-08-31] FF Extension: (German Dictionary, extended for Austria) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\de-AT@dictionaries.addons.mozilla.org.xpi [2021-03-28] FF Extension: (German Dictionary (Switzerland)) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\de-CH@dictionaries.addons.mozilla.org.xpi [2021-03-28] FF Extension: (German Dictionary) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\de-DE@dictionaries.addons.mozilla.org.xpi [2021-03-28] FF Extension: (Enhancer for YouTube™) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\enhancerforyoutube@maximerf.addons.mozilla.org.xpi [2021-06-07] FF Extension: (Convertisseur de fichiers - Par Online-Convert.com) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\firefox@online-convert.com.xpi [2021-05-27] FF Extension: (Tampermonkey) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\firefox@tampermonkey.net.xpi [2021-04-07] FF Extension: (IP Address and Domain Information) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\jid0-jJRRRBMgoShUhb07IvnxTBAl29w@jetpack.xpi [2021-04-17] FF Extension: (clean-youtube) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\jid1-q4sG8pYhq8KGHs@jetpack.xpi [2020-09-07] FF Extension: (Deutsch (DE) Language Pack) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\langpack-de@firefox.mozilla.org.xpi [2021-06-02] FF Extension: (English (GB) Language Pack) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\langpack-en-GB@firefox.mozilla.org.xpi [2021-06-02] FF Extension: (English (US) Language Pack) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\langpack-en-US@firefox.mozilla.org.xpi [2021-06-02] FF Extension: (Simage) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\LDSMGweb_plashcor@gmail.com.xpi [2020-10-01] FF Extension: (British English Dictionary (Marco Pinto)) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\marcoagpinto@mail.telepac.pt.xpi [2021-03-28] FF Extension: (Microsoft Rewards) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\MicrosoftRewards@microsoft.com.xpi [2021-03-19] [UpdateUrl:hxxps://browserdefaults.azurewebsites.net/FirefoxExtn/updateextension.json] FF Extension: (Image, Hyperlink Anchor and iFrame Remover) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\myApp2@example.com.xpi [2020-10-01] FF Extension: (Tab Mix - Rename Tab) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\rename_tab@tabmixplus.org.xpi [2020-10-01] FF Extension: (SaveForReadLater) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\saveforreadlater@gmail.com.xpi [2021-05-03] FF Extension: (SponsorBlock pour YouTube - Supprime les messages commerciaux et publicités intégrées) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\sponsorBlocker@ajay.app.xpi [2020-09-17] FF Extension: (Tab Counter) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\tab-counter@daawesomep.addons.mozilla.org.xpi [2020-12-29] FF Extension: (Tree Style Tab) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\treestyletab@piro.sakura.ne.jp.xpi [2020-10-12] FF Extension: (uBlock Origin) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\uBlock0@raymondhill.net.xpi [2020-10-13] FF Extension: (Whitelist JavaScript) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\veto@myridia.com.xpi [2020-10-01] FF Extension: (Tab Mix - Links) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\webext@tabmixplus.org.xpi [2020-10-01] FF Extension: (ColorfulTabs) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\{0545b830-f0aa-4d7e-8820-50a4629a56fe}.xpi [2021-06-05] FF Extension: (Check iframe) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\{117d8485-1088-4ce1-9050-5e9a05e6a8ee}.xpi [2020-10-01] FF Extension: (Export Tabs URLs) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\{17165bd9-9b71-4323-99a5-3d4ce49f3d75}.xpi [2020-10-01] FF Extension: (Rutracker De Recherche De Fichiers Torrent) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\{1c3ca161-8c6d-48ed-9993-da686bcf5310}.xpi [2021-04-16] FF Extension: (Startpage.com - recherche privé) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\{20fc2e06-e3e4-4b2b-812b-ab431220cada}.xpi [2020-08-19] FF Extension: (Temp Mail - E-mail temporaire disponible) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\{2d97895d-fcd3-41ab-82e6-6a1d4d2243f6}.xpi [2020-09-26] FF Extension: (Save Screenshot) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\{49bd4b24-e5b9-4238-a241-3487486f9235}.xpi [2020-10-04] FF Extension: (abstract 58) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\{49f89ee5-3f35-4bbf-9913-6c9d77978cde}.xpi [2020-10-01] FF Extension: (Cookie Quick Manager) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\{60f82f00-9ad5-4de5-b31c-b16a47c51558}.xpi [2020-08-31] FF Extension: (Onglet revers pour Tree Style Tab) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\{724545b6-7e17-4fa2-96e0-71eddf3c3319}.xpi [2020-08-28] FF Extension: (Handy Screenshot) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\{72cf1cb4-6679-4939-bb21-d4ce36de507a}.xpi [2020-10-04] FF Extension: (Stylus) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\{7a7a4a92-a2a0-41d1-9fd7-1e92480d612d}.xpi [2020-08-20] FF Extension: (Containers On The Go) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\{7e56c1ad-71c3-47fe-bdba-372c7770e0cb}.xpi [2020-10-01] FF Extension: (Minimal Consent) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\{94c24b3e-bf92-4ace-9279-e7fbf4dbf186}.xpi [2020-12-29] FF Extension: (Web Developer) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\{c45c406e-ab73-11d8-be73-000a95be3b12}.xpi [2021-06-03] FF Extension: (Cookie Popup Blocker) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\{eed5c5ce-73f5-4bbb-9996-e6e86bbd7e55}.xpi [2020-12-30] FF Extension: (Self-Destructing Cookies) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\Profil Firefox\Extensions\{ff257424-87c5-46d1-bebd-f45cc8d2a4bf}.xpi [2020-08-31] FF ProfilePath: D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\0le9fsfj.default-1583660862153 [2022-11-16] FF Notifications: D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\0le9fsfj.default-1583660862153 -> hxxps://smsmms.orange.fr; hxxps://www.commentcamarche.net; hxxps://mybuild.microsoft.com FF HomepageOverride: D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\0le9fsfj.default-1583660862153 -> Disabled: {3e06d96e-26f5-4a68-ac64-2b6bc583a35d} FF HomepageOverride: D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\0le9fsfj.default-1583660862153 -> Disabled: qwantcomforfirefox@jetpack FF Extension: (Ant Video downloader) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\0le9fsfj.default-1583660862153\Extensions\anttoolbar@ant.com.xpi [2020-04-22] FF Extension: (AutoDeleteCookie) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\0le9fsfj.default-1583660862153\Extensions\AutoDeleteCookie@woyaojizhu8.com.xpi [2020-04-20] FF Extension: (Cookie AutoDelete) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\0le9fsfj.default-1583660862153\Extensions\CookieAutoDelete@kennydo.com.xpi [2020-06-22] FF Extension: (Show History Frequent Sites Button) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\0le9fsfj.default-1583660862153\Extensions\frequent-sites-button@jeffersonscher.com.xpi [2020-07-06] FF Extension: (History in Threads) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\0le9fsfj.default-1583660862153\Extensions\jid1-EiGVwBQPlbKeZA@jetpack.xpi [2020-07-12] FF Extension: (Privacy Badger) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\0le9fsfj.default-1583660862153\Extensions\jid1-MnnxcxisBPnSXQ@jetpack.xpi [2020-06-30] FF Extension: (AdBlock — le meilleur bloqueur de pubs) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\0le9fsfj.default-1583660862153\Extensions\jid1-NIfFY2CA8fy1tg@jetpack.xpi [2020-07-19] FF Extension: (clean-youtube) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\0le9fsfj.default-1583660862153\Extensions\jid1-q4sG8pYhq8KGHs@jetpack.xpi [2020-03-15] FF Extension: (youtubetmadblock) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\0le9fsfj.default-1583660862153\Extensions\jid1-w4wG5nJhx4LJZr@jetpack.xpi [2020-03-18] FF Extension: (British English Dictionary (Marco Pinto)) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\0le9fsfj.default-1583660862153\Extensions\marcoagpinto@mail.telepac.pt.xpi [2020-06-25] FF Extension: (Microsoft Rewards) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\0le9fsfj.default-1583660862153\Extensions\MicrosoftRewards@microsoft.com.xpi [2022-11-16] [UpdateUrl:hxxps://browserdefaults.microsoft.com/FirefoxExtn/updateextension.json] FF Extension: (Oui) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\0le9fsfj.default-1583660862153\Extensions\qwantcomforfirefox@jetpack.xpi [2020-03-08] FF Extension: (Pas de nom) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\0le9fsfj.default-1583660862153\Extensions\tranquility@ushnisha.com.xpi [2020-07-17] FF Extension: (Tree Style Tab) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\0le9fsfj.default-1583660862153\Extensions\treestyletab@piro.sakura.ne.jp.xpi [2020-07-21] FF Extension: (TST Open Bookmarks as Partial Tree) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\0le9fsfj.default-1583660862153\Extensions\tst-open-bookmarks-as-partial-tree@piro.sakura.ne.jp.xpi [2020-05-22] FF Extension: (Worldwide Radio) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\0le9fsfj.default-1583660862153\Extensions\worldwide@radio.xpi [2020-05-11] FF Extension: (Startpage.com - recherche privé) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\0le9fsfj.default-1583660862153\Extensions\{20fc2e06-e3e4-4b2b-812b-ab431220cada}.xpi [2020-03-08] FF Extension: (Page précédente d'onglet) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\0le9fsfj.default-1583660862153\Extensions\{2be2913b-9560-4de1-90b4-4400c9c7b0fe}.xpi [2020-04-14] FF Extension: (Temp Mail - E-mail temporaire disponible) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\0le9fsfj.default-1583660862153\Extensions\{2d97895d-fcd3-41ab-82e6-6a1d4d2243f6}.xpi [2020-05-16] FF Extension: (Download All Images) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\0le9fsfj.default-1583660862153\Extensions\{32af1358-428a-446d-873e-5f8eb5f2a72e}.xpi [2020-06-03] FF Extension: (Page d’accueil et moteur de recherche Microsoft Bing) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\0le9fsfj.default-1583660862153\Extensions\{3e06d96e-26f5-4a68-ac64-2b6bc583a35d}.xpi [2022-11-16] [UpdateUrl:hxxps://browserdefaults.microsoft.com/FirefoxExtn/updateextension.json] FF Extension: (Cookie Quick Manager) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\0le9fsfj.default-1583660862153\Extensions\{60f82f00-9ad5-4de5-b31c-b16a47c51558}.xpi [2020-03-08] FF Extension: (Save Video As) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\0le9fsfj.default-1583660862153\Extensions\{63f3b52d-7581-42cd-9e82-fb1b2cdb0043}.xpi [2020-03-10] FF Extension: (Onglet revers pour Tree Style Tab) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\0le9fsfj.default-1583660862153\Extensions\{724545b6-7e17-4fa2-96e0-71eddf3c3319}.xpi [2020-05-22] FF Extension: (Stylus) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\0le9fsfj.default-1583660862153\Extensions\{7a7a4a92-a2a0-41d1-9fd7-1e92480d612d}.xpi [2020-04-25] FF Extension: (Adblock Plus - bloqueur de publicités gratuit) - D:\OneDrive 2021-08-09\Desktop\Anciennes données de Firefox\0le9fsfj.default-1583660862153\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2020-07-22] FF ProfilePath: C:\Firefox2022 [2023-03-02] FF Homepage: C:\Firefox2022 -> hxxps://www.qwant.com?vt=1&b=1&s=0&theme=-1&hc=1&hti=1&l=fr&locale=fr_FR&home=brand&si=1 FF Notifications: C:\Firefox2022 -> hxxps://csharpforums.net; hxxps://www.routard.com FF Extension: (TST Tab Search - DEV) - C:\Firefox2022\Extensions\@tst-search-dev.xpi [2023-01-18] [UpdateUrl:hxxps://update-manifest.niklasg.de/xpi.json?user=NiklasGollenstede&repo=tst-search&id=@tst-search-dev] FF Extension: (Ant Video downloader) - C:\Firefox2022\Extensions\anttoolbar@ant.com.xpi [2023-01-27] FF Extension: (AdBlocker for YouTube™) - C:\Firefox2022\Extensions\jid1-q4sG8pYhq8KGHs@jetpack.xpi [2023-01-09] FF Extension: (Simage) - C:\Firefox2022\Extensions\LDSMGweb_plashcor@gmail.com.xpi [2022-11-25] FF Extension: (Tree Style Tab) - C:\Firefox2022\Extensions\treestyletab@piro.sakura.ne.jp.xpi [2023-01-09] FF Extension: (uBlock Origin) - C:\Firefox2022\Extensions\uBlock0@raymondhill.net.xpi [2023-02-28] FF Extension: (Cookie Quick Manager) - C:\Firefox2022\Extensions\{60f82f00-9ad5-4de5-b31c-b16a47c51558}.xpi [2023-01-09] FF Extension: (NoScript) - C:\Firefox2022\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2023-02-10] FF Extension: (Download Statusbar) - C:\Firefox2022\Extensions\{76faaba6-3aa1-47a4-bf40-90aa2505e79c}.xpi [2022-11-11] FF Extension: (Qwant Lite) - C:\Firefox2022\Extensions\{7965226e-78d5-45c1-a1e9-2c9e6b80fff4}.xpi [2022-12-30] FF Extension: (Stylus) - C:\Firefox2022\Extensions\{7a7a4a92-a2a0-41d1-9fd7-1e92480d612d}.xpi [2022-11-20] FF Extension: (Web Developer) - C:\Firefox2022\Extensions\{c45c406e-ab73-11d8-be73-000a95be3b12}.xpi [2023-01-23] FF Extension: (British English Dictionary (Darmeth)) - C:\Firefox2022\Extensions\{d187b435-812e-4813-a93e-edccc4118f9d}.xpi [2023-02-14] FF ProfilePath: D:\Firefox2022 [2022-11-14] FF Extension: (Download Statusbar) - D:\Firefox2022\Extensions\{76faaba6-3aa1-47a4-bf40-90aa2505e79c}.xpi [2022-11-11] FF ProfilePath: D:\Profil Firefox - copie [2022-11-15] FF Notifications: D:\Profil Firefox - copie -> hxxps://urbanwomanmag.com; hxxps://fr.xhamsterlive.com; hxxps://caledosphere.com; hxxps://fr.lebisou.com; hxxps://plugnworkmetz.en-virtuel.fr; hxxps://txxx.com; hxxps://pierrecassen.com; hxxps://moovijobday.en-virtuel.lu; hxxps://forum.clubic.com; hxxps://lyon.citycrunch.fr; hxxps://github.community FF Extension: (Grammarly for Firefox) - D:\Profil Firefox - copie\Extensions\87677a2c52b84ad3a151a4a72f5bd3c4@jetpack.xpi [2020-09-15] FF Extension: (Signal Spam) - D:\Profil Firefox - copie\Extensions\@addonsignalspam.xpi [2020-10-06] FF Extension: (Fit To Width) - D:\Profil Firefox - copie\Extensions\@fittowidth.xpi [2021-04-20] FF Extension: (English United States Dictionary) - D:\Profil Firefox - copie\Extensions\@unitedstatesenglishdictionary.xpi [2021-03-28] FF Extension: (AdBlocker Ultimate) - D:\Profil Firefox - copie\Extensions\adblockultimate@adblockultimate.net.xpi [2020-11-20] FF Extension: (AdGuard AdBlocker) - D:\Profil Firefox - copie\Extensions\adguardadblocker@adguard.com.xpi [2021-05-07] FF Extension: (Ant Video downloader) - D:\Profil Firefox - copie\Extensions\anttoolbar@ant.com.xpi [2020-08-19] FF Extension: (Castorus) - D:\Profil Firefox - copie\Extensions\contact@castorus.com.xpi [2021-04-16] FF Extension: (Cookie AutoDelete) - D:\Profil Firefox - copie\Extensions\CookieAutoDelete@kennydo.com.xpi [2020-08-31] FF Extension: (German Dictionary, extended for Austria) - D:\Profil Firefox - copie\Extensions\de-AT@dictionaries.addons.mozilla.org.xpi [2021-03-28] FF Extension: (German Dictionary (Switzerland)) - D:\Profil Firefox - copie\Extensions\de-CH@dictionaries.addons.mozilla.org.xpi [2021-03-28] FF Extension: (German Dictionary) - D:\Profil Firefox - copie\Extensions\de-DE@dictionaries.addons.mozilla.org.xpi [2021-03-28] FF Extension: (Enhancer for YouTube™) - D:\Profil Firefox - copie\Extensions\enhancerforyoutube@maximerf.addons.mozilla.org.xpi [2021-06-07] FF Extension: (Convertisseur de fichiers - Par Online-Convert.com) - D:\Profil Firefox - copie\Extensions\firefox@online-convert.com.xpi [2021-05-27] FF Extension: (Tampermonkey) - D:\Profil Firefox - copie\Extensions\firefox@tampermonkey.net.xpi [2021-04-07] FF Extension: (IP Address and Domain Information) - D:\Profil Firefox - copie\Extensions\jid0-jJRRRBMgoShUhb07IvnxTBAl29w@jetpack.xpi [2021-04-17] FF Extension: (clean-youtube) - D:\Profil Firefox - copie\Extensions\jid1-q4sG8pYhq8KGHs@jetpack.xpi [2020-09-07] FF Extension: (Deutsch (DE) Language Pack) - D:\Profil Firefox - copie\Extensions\langpack-de@firefox.mozilla.org.xpi [2021-06-02] FF Extension: (English (GB) Language Pack) - D:\Profil Firefox - copie\Extensions\langpack-en-GB@firefox.mozilla.org.xpi [2021-06-02] FF Extension: (English (US) Language Pack) - D:\Profil Firefox - copie\Extensions\langpack-en-US@firefox.mozilla.org.xpi [2021-06-02] FF Extension: (Simage) - D:\Profil Firefox - copie\Extensions\LDSMGweb_plashcor@gmail.com.xpi [2020-10-01] FF Extension: (British English Dictionary (Marco Pinto)) - D:\Profil Firefox - copie\Extensions\marcoagpinto@mail.telepac.pt.xpi [2021-03-28] FF Extension: (Microsoft Rewards) - D:\Profil Firefox - copie\Extensions\MicrosoftRewards@microsoft.com.xpi [2021-03-19] [UpdateUrl:hxxps://browserdefaults.azurewebsites.net/FirefoxExtn/updateextension.json] FF Extension: (Image, Hyperlink Anchor and iFrame Remover) - D:\Profil Firefox - copie\Extensions\myApp2@example.com.xpi [2020-10-01] FF Extension: (Tab Mix - Rename Tab) - D:\Profil Firefox - copie\Extensions\rename_tab@tabmixplus.org.xpi [2020-10-01] FF Extension: (SaveForReadLater) - D:\Profil Firefox - copie\Extensions\saveforreadlater@gmail.com.xpi [2021-05-03] FF Extension: (SponsorBlock pour YouTube - Supprime les messages commerciaux et publicités intégrées) - D:\Profil Firefox - copie\Extensions\sponsorBlocker@ajay.app.xpi [2020-09-17] FF Extension: (Tab Counter) - D:\Profil Firefox - copie\Extensions\tab-counter@daawesomep.addons.mozilla.org.xpi [2020-12-29] FF Extension: (Tree Style Tab) - D:\Profil Firefox - copie\Extensions\treestyletab@piro.sakura.ne.jp.xpi [2020-10-12] FF Extension: (uBlock Origin) - D:\Profil Firefox - copie\Extensions\uBlock0@raymondhill.net.xpi [2020-10-13] FF Extension: (Whitelist JavaScript) - D:\Profil Firefox - copie\Extensions\veto@myridia.com.xpi [2020-10-01] FF Extension: (Tab Mix - Links) - D:\Profil Firefox - copie\Extensions\webext@tabmixplus.org.xpi [2020-10-01] FF Extension: (ColorfulTabs) - D:\Profil Firefox - copie\Extensions\{0545b830-f0aa-4d7e-8820-50a4629a56fe}.xpi [2021-06-05] FF Extension: (Check iframe) - D:\Profil Firefox - copie\Extensions\{117d8485-1088-4ce1-9050-5e9a05e6a8ee}.xpi [2020-10-01] FF Extension: (Export Tabs URLs) - D:\Profil Firefox - copie\Extensions\{17165bd9-9b71-4323-99a5-3d4ce49f3d75}.xpi [2020-10-01] FF Extension: (Rutracker De Recherche De Fichiers Torrent) - D:\Profil Firefox - copie\Extensions\{1c3ca161-8c6d-48ed-9993-da686bcf5310}.xpi [2021-04-16] FF Extension: (Startpage.com - recherche privé) - D:\Profil Firefox - copie\Extensions\{20fc2e06-e3e4-4b2b-812b-ab431220cada}.xpi [2020-08-19] FF Extension: (Temp Mail - E-mail temporaire disponible) - D:\Profil Firefox - copie\Extensions\{2d97895d-fcd3-41ab-82e6-6a1d4d2243f6}.xpi [2020-09-26] FF Extension: (Save Screenshot) - D:\Profil Firefox - copie\Extensions\{49bd4b24-e5b9-4238-a241-3487486f9235}.xpi [2020-10-04] FF Extension: (abstract 58) - D:\Profil Firefox - copie\Extensions\{49f89ee5-3f35-4bbf-9913-6c9d77978cde}.xpi [2020-10-01] FF Extension: (Cookie Quick Manager) - D:\Profil Firefox - copie\Extensions\{60f82f00-9ad5-4de5-b31c-b16a47c51558}.xpi [2020-08-31] FF Extension: (Onglet revers pour Tree Style Tab) - D:\Profil Firefox - copie\Extensions\{724545b6-7e17-4fa2-96e0-71eddf3c3319}.xpi [2020-08-28] FF Extension: (Handy Screenshot) - D:\Profil Firefox - copie\Extensions\{72cf1cb4-6679-4939-bb21-d4ce36de507a}.xpi [2020-10-04] FF Extension: (Stylus) - D:\Profil Firefox - copie\Extensions\{7a7a4a92-a2a0-41d1-9fd7-1e92480d612d}.xpi [2020-08-20] FF Extension: (Containers On The Go) - D:\Profil Firefox - copie\Extensions\{7e56c1ad-71c3-47fe-bdba-372c7770e0cb}.xpi [2020-10-01] FF Extension: (Minimal Consent) - D:\Profil Firefox - copie\Extensions\{94c24b3e-bf92-4ace-9279-e7fbf4dbf186}.xpi [2020-12-29] FF Extension: (Web Developer) - D:\Profil Firefox - copie\Extensions\{c45c406e-ab73-11d8-be73-000a95be3b12}.xpi [2021-06-03] FF Extension: (Cookie Popup Blocker) - D:\Profil Firefox - copie\Extensions\{eed5c5ce-73f5-4bbb-9996-e6e86bbd7e55}.xpi [2020-12-30] FF Extension: (Self-Destructing Cookies) - D:\Profil Firefox - copie\Extensions\{ff257424-87c5-46d1-bebd-f45cc8d2a4bf}.xpi [2020-08-31] FF Plugin: @videolan.org/vlc,version=3.0.17.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-03-24] (VideoLAN -> VideoLAN) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2023-02-14] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2022-06-01] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.cpdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2022-06-01] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2022-06-01] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2022-06-01] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2022-06-01] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\config-prefs.js [2023-01-06] FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\eset_security_config_overlay.js [2023-03-02] Opera: ======= OPR Profile: C:\Users\Utilisateur\AppData\Roaming\Opera Software\Opera Stable [2023-03-02] OPR DefaultSuggestURL: Opera Stable -> hxxps://api.bing.com/osjson.aspx?query={searchTerms}&language={language}&FORM=OPERAS OPR Extension: (Tree Tabs) - C:\Users\Utilisateur\AppData\Roaming\Opera Software\Opera Stable\Extensions\adgafhafebhhomajadapndmhmckpfpic [2022-12-15] OPR Extension: (Video Downloader Multiformat) - C:\Users\Utilisateur\AppData\Roaming\Opera Software\Opera Stable\Extensions\beemgnphifpbdehfmohojkhlklfaddih [2022-12-18] OPR Extension: (Tab Slider) - C:\Users\Utilisateur\AppData\Roaming\Opera Software\Opera Stable\Extensions\ehniglkdnhodipkehjfaginiidlffngl [2022-12-15] OPR Extension: (Rich Hints Agent) - C:\Users\Utilisateur\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2022-11-27] OPR Extension: (Opera Wallet) - C:\Users\Utilisateur\AppData\Roaming\Opera Software\Opera Stable\Extensions\gojhcdgcpbpfigcaejpfhfegekdgiblk [2023-02-16] OPR Extension: (Amazon Assistant Promotion) - C:\Users\Utilisateur\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2022-11-27] Vivaldi: ======= VIV DefaultProfile: Default VIV Profile: C:\Users\Utilisateur\AppData\Local\Vivaldi\User Data\Default [2023-02-21] VIV Notifications: Default -> hxxps://www.reddit.com ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-02-01] (Adobe Inc. -> Adobe Inc.) R2 AnyDesk; C:\Program Files (x86)\AnyDesk\AnyDesk.exe [3853384 2022-11-11] (philandro Software GmbH -> AnyDesk Software GmbH) R2 AzureAttestService; C:\Program Files\Microsoft\AzureAttestService\AzureAttestService.dll [151288 2019-07-24] (Microsoft Windows -> Microsoft Corporation) R2 EaseUS UPDATE SERVICE; C:\Program Files (x86)\EaseUS\ENS\ensserver.exe [26512 2022-11-16] (CHENGDU YIWO Tech Development Co., Ltd. -> ) R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [3549872 2023-01-16] (ESET, spol. s r.o. -> ESET) R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [3549872 2023-01-16] (ESET, spol. s r.o. -> ESET) R2 Everything; C:\Program Files\Everything\Everything.exe [2260560 2021-01-25] (voidtools -> voidtools) R2 FoxitReaderUpdateService; C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\FoxitPDFReaderUpdateService.exe [2358800 2022-05-19] (FOXIT SOFTWARE INC. -> Foxit Software Inc.) R2 MSSQL$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [485048 2017-08-22] (Microsoft Corporation -> Microsoft Corporation) R2 MSSQLSERVER; C:\Program Files\Microsoft SQL Server\MSSQL15.MSSQLSERVER\MSSQL\Binn\sqlservr.exe [626280 2019-09-24] (Microsoft Corporation -> Microsoft Corporation) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [224184 2023-02-16] (Microsoft Windows Publisher -> Microsoft Corporation) S4 SQLAgent$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [578744 2017-08-22] (Microsoft Corporation -> Microsoft Corporation) S3 SQLSERVERAGENT; C:\Program Files\Microsoft SQL Server\MSSQL15.MSSQLSERVER\MSSQL\Binn\SQLAGENT.EXE [695912 2019-09-24] (Microsoft Corporation -> Microsoft Corporation) R2 SQLTELEMETRY; C:\Program Files\Microsoft SQL Server\MSSQL15.MSSQLSERVER\MSSQL\Binn\sqlceip.exe [290648 2019-09-24] (Microsoft Corporation -> Microsoft Corporation) R2 SQLTELEMETRY$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL14.SQLEXPRESS\MSSQL\Binn\sqlceip.exe [246968 2017-08-22] (Microsoft Corporation -> Microsoft Corporation) R2 TbtP2pShortcutService; C:\Windows\TbtP2pShortcutService.exe [254112 2021-07-14] (Intel Corporation -> Intel Corporation) S3 VSStandardCollectorService150; C:\Program Files (x86)\Microsoft Visual Studio\Shared\Common\DiagnosticsHub.Collection.Service\StandardCollector.Service.exe [142304 2022-06-01] (Microsoft Corporation -> Microsoft Corporation) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\NisSrv.exe [3191272 2022-11-11] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MsMpEng.exe [133544 2022-11-11] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [198416 2023-01-16] (ESET, spol. s r.o. -> ESET) R0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [119904 2023-01-16] (ESET, spol. s r.o. -> ESET) S0 eelam; C:\Windows\System32\DRIVERS\eelam.sys [16336 2022-11-09] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET) R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [237208 2023-01-16] (ESET, spol. s r.o. -> ESET) R2 ekbdflt; C:\Windows\system32\DRIVERS\ekbdflt.sys [55392 2023-01-16] (ESET, spol. s r.o. -> ESET) R1 epfw; C:\Windows\system32\DRIVERS\epfw.sys [81696 2023-01-16] (ESET, spol. s r.o. -> ESET) R1 epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [122504 2023-01-16] (ESET, spol. s r.o. -> ESET) R3 iaLPSS2_GPIO2_TGL; C:\Windows\System32\DriverStore\FileRepository\ialpss2_gpio2_tgl.inf_amd64_d0e63c4e3754f42f\iaLPSS2_GPIO2_TGL.sys [128152 2020-08-09] (Intel Corporation -> Intel Corporation) R3 iaLPSS2_I2C_TGL; C:\Windows\System32\DriverStore\FileRepository\ialpss2_i2c_tgl.inf_amd64_ab87bf17a571e523\iaLPSS2_I2C_TGL.sys [197272 2020-08-09] (Intel Corporation -> Intel Corporation) R3 iaLPSS2_UART2_TGL; C:\Windows\System32\DriverStore\FileRepository\ialpss2_uart2_tgl.inf_amd64_1a8e964d43720594\iaLPSS2_UART2_TGL.sys [310440 2020-08-09] (Intel Corporation -> Intel Corporation) S4 RsFx0500; C:\Windows\System32\DRIVERS\RsFx0500.sys [261848 2017-08-22] (Microsoft Corporation -> Microsoft Corporation) S4 RsFx0600; C:\Windows\System32\DRIVERS\RsFx0600.sys [286976 2019-09-24] (Microsoft Corporation -> Microsoft Corporation) S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [49616 2022-11-11] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [469288 2022-11-11] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [95520 2022-11-11] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2023-03-02 12:35 - 2023-03-02 12:36 - 000054890 _____ C:\Users\Utilisateur\Desktop\FRST.txt 2023-03-02 12:33 - 2023-03-02 12:35 - 000000000 ____D C:\FRST 2023-03-02 12:32 - 2023-03-02 12:31 - 002378752 _____ (Farbar) C:\Users\Utilisateur\Desktop\FRST64.exe 2023-03-02 12:15 - 2023-03-02 12:15 - 000564747 _____ C:\Users\Utilisateur\Desktop\ZHPDiag.html 2023-03-02 12:08 - 2023-03-02 12:08 - 000000908 _____ C:\Users\Utilisateur\Desktop\ZHPSuite.lnk 2023-03-02 02:15 - 2023-03-02 02:15 - 019772977 _____ C:\Users\Utilisateur\Downloads\34 howtogeek w_wile405 4GYmwCxNINGi_wZaTqJ7mQ.pdf 2023-03-01 13:28 - 2023-03-02 12:15 - 000459736 _____ C:\Users\Utilisateur\Desktop\ZHPDiag.txt 2023-03-01 13:23 - 2023-03-01 13:23 - 000000908 _____ C:\Users\Utilisateur\Desktop\ZHPDiag.lnk 2023-03-01 11:27 - 2023-03-01 11:27 - 000045172 _____ C:\Users\Utilisateur\Desktop\ZHPCleaner (R).html 2023-03-01 11:27 - 2023-03-01 11:27 - 000030632 _____ C:\Users\Utilisateur\Desktop\ZHPCleaner (R).txt 2023-03-01 11:19 - 2023-03-01 13:18 - 000009160 _____ C:\Users\Utilisateur\Desktop\ZHPCleaner (S).html 2023-03-01 11:19 - 2023-03-01 13:18 - 000002566 _____ C:\Users\Utilisateur\Desktop\ZHPCleaner (S).txt 2023-03-01 10:30 - 2023-03-01 10:30 - 000000918 _____ C:\Users\Utilisateur\Desktop\ZHPCleaner.lnk 2023-03-01 09:08 - 2023-03-01 09:08 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2023-03-01 09:08 - 2023-03-01 09:08 - 000000993 _____ C:\Users\Public\Desktop\Firefox.lnk 2023-03-01 09:08 - 2023-03-01 09:08 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla 2023-03-01 09:05 - 2023-03-01 09:05 - 000350288 _____ (Mozilla) C:\Users\Utilisateur\Downloads\Firefox 110-0-1 Installer.exe 2023-03-01 09:04 - 2023-03-01 09:04 - 000350288 _____ (Mozilla) C:\Users\Utilisateur\Downloads\Firefox Installer.exe 2023-03-01 07:01 - 2023-03-01 07:01 - 000000000 ____D C:\Program Files\Everything 2023-02-24 06:22 - 2023-02-24 06:22 - 000001255 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pixillion - Convertisseur d'images.lnk 2023-02-24 06:22 - 2023-02-24 06:22 - 000001243 _____ C:\Users\Public\Desktop\Pixillion - Convertisseur d'images.lnk 2023-02-24 06:22 - 2023-02-24 06:22 - 000000000 ____D C:\Users\Utilisateur\Suite NCH Software 2023-02-22 12:07 - 2023-03-01 22:26 - 000000520 _____ C:\Users\Utilisateur\Documents\spider.sav 2023-02-22 10:26 - 2023-02-22 10:26 - 000000652 _____ C:\Users\Utilisateur\Desktop\Fifille.lnk 2023-02-22 10:24 - 2023-02-22 10:24 - 000000823 _____ C:\Users\Utilisateur\Desktop\ErinTheArtist 065384cc94fbb410c26f0b7ade3126ec--very-long-hair-funny-photos.jpg.lnk 2023-02-20 00:41 - 2023-02-20 00:41 - 000000901 _____ C:\Users\Utilisateur\Desktop\odysee.com - Thought Bullets. Ever Received one I bet you have..mp4.lnk 2023-02-18 06:38 - 2023-02-24 06:38 - 000002450 _____ C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Vivaldi.lnk 2023-02-18 06:38 - 2023-02-24 06:38 - 000002413 _____ C:\Users\Utilisateur\Desktop\Vivaldi.lnk 2023-02-18 06:38 - 2023-02-24 06:38 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\Vivaldi 2023-02-18 06:38 - 2023-02-20 19:05 - 000000527 _____ C:\Users\Utilisateur\.vivaldi_reporting_data 2023-02-18 06:38 - 2023-02-18 06:38 - 000003860 _____ C:\Windows\system32\Tasks\VivaldiUpdateCheck-09fce57e152e3e2e 2023-02-16 23:36 - 2023-02-16 23:36 - 000003140 _____ C:\Users\Utilisateur\Downloads\Cuisses écarrtées th.webp 2023-02-16 03:22 - 2023-02-16 03:22 - 000000000 ___HD C:\$WinREAgent 2023-02-14 22:16 - 2023-03-01 09:08 - 000000000 ____D C:\Program Files\Mozilla Firefox 2023-02-12 17:56 - 2023-02-12 17:56 - 000001199 _____ C:\Users\Utilisateur\Desktop\tnaflix.com - LIFESELECTOR - Fitting turns into a hot lesbian session between tailor and customer Porn Videos.mp4.lnk 2023-02-12 11:50 - 2023-02-12 11:51 - 000001058 _____ C:\Users\Utilisateur\Desktop\Rebours.exe.lnk 2023-02-10 01:18 - 2023-03-01 22:41 - 000000000 ____D C:\Windows\system32\Tasks\PowerToys 2023-02-10 01:18 - 2023-02-10 01:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerToys (Preview) 2023-02-10 01:18 - 2023-02-10 01:18 - 000000000 ____D C:\Program Files\PowerToys 2023-02-09 22:54 - 2023-02-09 22:54 - 000001081 _____ C:\Users\Public\Desktop\WinMerge.lnk 2023-02-09 22:54 - 2023-02-09 22:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinMerge 2023-02-09 22:54 - 2023-02-09 22:54 - 000000000 ____D C:\Program Files (x86)\WinMerge 2023-02-09 22:51 - 2023-02-09 22:51 - 007782496 _____ (hxxps://winmerge.org ) C:\Users\Utilisateur\Downloads\WinMerge-2.16.26-Setup.exe 2023-02-07 04:21 - 2023-02-07 04:21 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\CEF 2023-02-06 08:56 - 2023-02-25 11:05 - 000004562 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task 2023-02-06 08:56 - 2023-02-18 14:29 - 000002073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk 2023-02-06 08:56 - 2023-02-18 14:29 - 000002061 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk 2023-02-06 08:56 - 2023-02-06 08:57 - 000000000 ____D C:\Users\Utilisateur\AppData\LocalLow\Adobe 2023-02-06 08:56 - 2023-02-06 08:56 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\com.adobe.dunamis 2023-02-06 08:56 - 2023-02-06 08:56 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\SolidDocuments 2023-02-06 08:56 - 2023-02-06 08:56 - 000000000 ____D C:\Users\Utilisateur\.ms-ad 2023-02-06 08:56 - 2023-02-06 08:56 - 000000000 ____D C:\Program Files\Adobe 2023-02-06 08:55 - 2023-02-06 08:57 - 000000000 ____D C:\ProgramData\Adobe 2023-02-06 08:55 - 2023-02-06 08:56 - 000000000 ____D C:\Program Files\Common Files\Adobe 2023-02-06 08:31 - 2023-02-07 04:21 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\Adobe 2023-02-05 19:31 - 2023-02-05 19:31 - 000000243 _____ C:\Users\Utilisateur\.gitconfig 2023-02-04 23:34 - 2023-02-04 23:34 - 000000641 _____ C:\Users\Utilisateur\Desktop\docile.lnk.lnk 2023-02-04 09:07 - 2023-02-04 09:07 - 000350232 _____ (Mozilla) C:\Users\Utilisateur\Downloads\Firefox 109 Installer.exe 2023-02-04 07:43 - 2023-02-04 07:43 - 000001579 _____ C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ÉtatClavier3.lnk 2023-02-03 18:26 - 2023-02-03 18:26 - 000000000 ____D C:\Users\Utilisateur\Tracing 2023-02-01 14:41 - 2023-02-01 14:41 - 000036359 _____ C:\Users\Utilisateur\Downloads\FA157696.pdf ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2023-03-02 12:35 - 2022-11-14 07:13 - 000000000 ____D C:\Firefox2022 2023-03-02 12:35 - 2022-11-09 14:03 - 000000000 ____D C:\_Octobre 2018 2 2023-03-02 12:15 - 2022-12-15 08:49 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\ZHP 2023-03-02 12:08 - 2022-12-15 08:49 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\ZHP 2023-03-02 12:05 - 2022-09-20 00:21 - 000000000 ____D C:\Windows\system32\SleepStudy 2023-03-02 12:05 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2023-03-02 06:08 - 2022-11-07 11:18 - 000000000 ____D C:\Users\Utilisateur\AppData\LocalLow\Mozilla 2023-03-02 03:47 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\SecureBootUpdates 2023-03-02 03:47 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\CbsTemp 2023-03-02 00:10 - 2022-09-20 01:08 - 000000000 ___RD C:\Users\Utilisateur\Images 2023-03-02 00:01 - 2022-11-07 11:18 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2023-03-01 23:55 - 2022-11-16 03:00 - 000000000 ____D C:\Users\Utilisateur\Downloads\ant 2023-03-01 23:48 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness 2023-03-01 23:47 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2023-03-01 22:48 - 2022-09-20 00:27 - 002774152 _____ C:\Windows\system32\PerfStringBackup.INI 2023-03-01 22:48 - 2019-12-07 15:50 - 001168660 _____ C:\Windows\system32\perfh00C.dat 2023-03-01 22:48 - 2019-12-07 15:50 - 000313668 _____ C:\Windows\system32\perfc00C.dat 2023-03-01 22:48 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF 2023-03-01 22:41 - 2022-11-07 11:31 - 000000000 __SHD C:\Users\Utilisateur\IntelGraphicsProfiles 2023-03-01 22:41 - 2022-11-07 11:31 - 000000000 ____D C:\Intel 2023-03-01 22:41 - 2022-11-07 11:18 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2023-03-01 22:41 - 2022-09-20 00:21 - 000008192 ___SH C:\DumpStack.log.tmp 2023-03-01 22:41 - 2022-09-20 00:21 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2023-03-01 22:41 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\ServiceState 2023-03-01 22:40 - 2022-11-10 07:07 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\Everything 2023-03-01 22:40 - 2022-11-10 07:02 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\Everything 2023-03-01 22:40 - 2019-12-07 10:03 - 000786432 _____ C:\Windows\system32\config\BBI 2023-03-01 15:26 - 2022-11-09 16:20 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\.IdentityService 2023-03-01 14:03 - 2022-11-23 17:58 - 000000000 ____D C:\Temp 2023-03-01 08:25 - 2022-11-09 22:23 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\CrashDumps 2023-03-01 08:17 - 2022-11-07 11:15 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\D3DSCache 2023-03-01 07:01 - 2022-11-10 07:02 - 000001070 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Everything.lnk 2023-03-01 07:01 - 2022-11-10 07:02 - 000001058 _____ C:\Users\Public\Desktop\Everything.lnk 2023-03-01 06:50 - 2022-11-10 07:02 - 000000000 ____D C:\Program Files (x86)\Everything 2023-03-01 01:38 - 2023-01-10 02:31 - 000000000 ____D C:\Users\Utilisateur\Documents\PicPick 2023-03-01 01:35 - 2022-11-11 19:59 - 000000000 ____D C:\Program Files (x86)\AnyDesk 2023-03-01 01:23 - 2023-01-09 20:39 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\PicPick 2023-03-01 01:23 - 2022-12-15 18:19 - 000000000 ____D C:\Users\DefaultAppPool 2023-03-01 01:23 - 2022-12-15 10:00 - 000000000 ____D C:\Users\.NET v4.5 Classic 2023-03-01 01:23 - 2022-12-15 10:00 - 000000000 ____D C:\Users\.NET v4.5 2023-03-01 01:23 - 2022-11-09 18:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winaero Tweaker 2023-03-01 01:23 - 2022-11-09 18:54 - 000000000 ____D C:\Program Files\Winaero Tweaker 2023-03-01 01:23 - 2022-09-20 01:08 - 000000000 ____D C:\Users\Utilisateur 2023-03-01 01:23 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\Sysprep 2023-03-01 01:21 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\registration 2023-02-28 21:24 - 2019-12-07 10:03 - 000786432 _____ C:\Windows\system32\config\BBI(11) 2023-02-27 08:33 - 2023-01-16 23:34 - 000002280 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2023-02-27 08:33 - 2022-09-20 00:21 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2023-02-24 23:54 - 2022-11-07 11:00 - 000003584 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-962550837-704519019-1221734790-1001 2023-02-24 23:54 - 2022-11-07 10:59 - 000003372 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-962550837-704519019-1221734790-1001 2023-02-24 23:54 - 2022-09-20 01:08 - 000002472 _____ C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2023-02-24 06:24 - 2023-01-18 04:43 - 000000000 ____D C:\Users\Utilisateur\Downloads\Simage 2023-02-24 06:22 - 2022-12-14 20:28 - 000000000 ____D C:\Windows\system32\Tasks\NCH Software 2023-02-24 06:22 - 2022-12-14 20:28 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\NCH Software 2023-02-24 06:22 - 2022-12-14 20:28 - 000000000 ____D C:\ProgramData\NCH Software 2023-02-24 06:22 - 2022-12-14 20:28 - 000000000 ____D C:\Program Files (x86)\NCH Software 2023-02-23 05:58 - 2023-01-01 05:38 - 000001009 _____ C:\Users\Utilisateur\Desktop\qwant.com fille lascive – Recherche Qwant th.jpg 0382022-11-2504-5638.png.lnk 2023-02-23 04:35 - 2022-12-02 01:06 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\SourceServer 2023-02-22 10:36 - 2023-01-15 07:57 - 000000789 _____ C:\Users\Utilisateur\Desktop\les-cheveux-long (sic) 60.scr.lnk 2023-02-21 19:11 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\NDF 2023-02-21 13:16 - 2022-11-09 17:37 - 000000000 ____D C:\Scripts 2023-02-17 08:49 - 2022-11-07 11:19 - 000000000 ____D C:\Program Files\Mozilla Thunderbird 2023-02-16 21:09 - 2022-11-07 11:19 - 000001055 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thunderbird.lnk 2023-02-16 04:01 - 2022-09-20 00:21 - 000469560 _____ C:\Windows\system32\FNTCACHE.DAT 2023-02-16 03:57 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\oobe 2023-02-16 03:57 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SystemResources 2023-02-16 03:57 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\setup 2023-02-16 03:57 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\oobe 2023-02-16 03:57 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\DDFs 2023-02-16 03:56 - 2019-12-07 15:53 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2023-02-16 03:56 - 2019-12-07 10:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel 2023-02-16 03:56 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\PolicyDefinitions 2023-02-16 03:56 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\bcastdvr 2023-02-16 03:26 - 2022-09-20 00:25 - 003015680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll 2023-02-16 03:21 - 2022-11-07 11:29 - 000000000 ____D C:\Windows\system32\MRT 2023-02-16 03:19 - 2022-11-07 11:29 - 149955784 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2023-02-16 00:28 - 2022-11-07 11:40 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\ElevatedDiagnostics 2023-02-15 23:05 - 2022-11-09 19:20 - 000004124 _____ C:\Windows\system32\Tasks\infatica_p2b 2023-02-15 23:05 - 2022-11-09 19:20 - 000000000 ____D C:\Program Files (x86)\Infatica P2B 2023-02-13 18:06 - 2022-12-05 23:08 - 000000000 ____D C:\Users\Utilisateur\Desktop\.vs 2023-02-10 12:08 - 2022-11-27 16:01 - 000004232 _____ C:\Windows\system32\Tasks\Opera scheduled Autoupdate 1669561262 2023-02-10 12:08 - 2022-11-27 16:01 - 000001530 _____ C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navigateur Opera.lnk 2023-02-10 01:42 - 2022-09-20 00:21 - 000003690 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2023-02-10 01:42 - 2022-09-20 00:21 - 000003566 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2023-02-10 01:18 - 2022-11-07 11:23 - 000000000 ____D C:\ProgramData\Package Cache 2023-02-07 14:01 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\LiveKernelReports 2023-02-06 08:56 - 2022-09-20 01:08 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\Adobe 2023-02-06 08:56 - 2022-09-20 01:08 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\Packages 2023-02-04 07:09 - 2019-12-07 15:51 - 000000000 ____D C:\Windows\system32\FxsTmp ==================== Fichiers à la racine de certains dossiers ======== 2022-12-25 23:06 - 2022-12-25 23:06 - 000001587 _____ () C:\Users\Utilisateur\AppData\Roaming\ListIrfanView - Raccourci.lnk ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================