Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 12-03-2023 Exécuté par ibay4 (administrateur) sur LAPTOP-U3E371GQ (LENOVO 82K2) (16-03-2023 13:48:26) Exécuté depuis C:\Users\ibay4\Desktop Profils chargés: ibay4 Plate-forme: Microsoft Windows 11 Famille Version 22H2 22621.1265 (X64) Langue: Français (France) Navigateur par défaut: Chrome Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Advanced Micro Devices Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.22.20069.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSServ.exe (Advanced Micro Devices Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.22.20069.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe (A-Volute SAS -> A-Volute) C:\Users\ibay4\AppData\Local\NhNotifSys\nahimic\nahimicNotifSys.exe (C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler.exe (C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler64.exe (C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.CpuIdRemote64.exe (C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.DisplayAdapter.exe (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.22.20069.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSServ.exe ->) (Advanced Micro Devices Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.22.20069.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSSrcExt.exe (C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.22.20069.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe ->) (Advanced Micro Devices Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.22.20069.0_x64__0a9344xs7nr4m\radeonsoftware\cncmd.exe (C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.22.20069.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe ->) (Advanced Micro Devices Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.22.20069.0_x64__0a9344xs7nr4m\radeonsoftware\QtWebEngineProcess.exe (C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost86\Lenovo.Modern.ImController.PluginHost.Device.exe (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\iCUE.exe (Discord Inc. -> Discord Inc.) C:\Users\ibay4\AppData\Local\Discord\app-1.0.9011\Discord.exe <7> (DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_cd446641b2a10fd9\LenovoUtilityService.exe ->) (Lenovo -> Lenovo(beijing) Limited) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_cd446641b2a10fd9\FnHotkeyUtility.exe (DriverStore\FileRepository\u0383722.inf_amd64_5cbaacf42cbd3812\B383240\atiesrxx.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0383722.inf_amd64_5cbaacf42cbd3812\B383240\atieclxx.exe (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <11> (explorer.exe ->) (Hanvon Ugee Technology Co., Ltd. -> XPPEN TECHNOLOGY CO.) C:\Program Files\Pentablet\PenTablet.exe (explorer.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\ProgramData\Lenovo\Vantage\Addins\LenovoBatteryGaugeAddin\1.0.0.62\x64\QSHelper.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <6> (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (services.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe (services.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0383722.inf_amd64_5cbaacf42cbd3812\B383240\atiesrxx.exe (services.exe ->) (A-Volute SAS -> Nahimic) C:\Windows\System32\NahimicService.exe (services.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.exe (services.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\CueLLAccessService.exe (services.exe ->) (Corsair Memory, Inc. -> Corsair) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\iCUEDevicePluginHost.exe <8> (services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\LenovoVantageService.exe (services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe (services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\System32\drivers\lenovo\UDC\Service\UDClientService.exe (services.exe ->) (Lenovo -> Lenovo(beijing) Limited) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_cd446641b2a10fd9\LenovoUtilityService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft GameInput\x64\gameinputsvc.exe <2> (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (services.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_9.74.15001.0_x64__8wekyb3d8bbwe\gamingservices.exe (services.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_9.74.15001.0_x64__8wekyb3d8bbwe\gamingservicesnet.exe (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) C:\Windows\System32\CorsairGamingAudioCfgService64.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\NisSrv.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\System32\Sgrm\SgrmBroker.exe (services.exe ->) (MongoDB, Inc) [Fichier non signé] C:\Program Files\MongoDB\Server\4.4\bin\mongod.exe (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2> (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvlt.inf_amd64_ff61f7ab5e75eb51\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_6e7542ceb248e4b2\RtkAudUService64.exe <2> (services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2204.13303.0_x64__8wekyb3d8bbwe\Cortana.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.23012.167.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\pacjsworker.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (svchost.exe ->) (WhatsApp Inc.) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2308.6.0_x64__cv1g1gvanyjgm\WhatsApp.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_6e7542ceb248e4b2\RtkAudUService64.exe [1510240 2022-08-03] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [PenTablet] => C:\Program Files\Pentablet\PenTablet.exe [870136 2021-10-28] (Hanvon Ugee Technology Co., Ltd. -> XPPEN TECHNOLOGY CO.) HKLM\...\Run: [KeePass 2 PreLoad] => C:\Program Files\KeePass Password Safe 2\KeePass.exe [3190384 2021-09-10] (Open Source Developer, Dominik Reichl -> Dominik Reichl) HKLM\...\Run: [CORSAIR iCUE 4 Software] => C:\Program Files\Corsair\CORSAIR iCUE 4 Software\iCUE Launcher.exe [185384 2022-11-02] (Corsair Memory, Inc. -> Corsair Memory, Inc.) HKU\S-1-5-21-2599356748-152731439-2733360197-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32823248 2023-03-08] (Epic Games Inc. -> Epic Games, Inc.) HKU\S-1-5-21-2599356748-152731439-2733360197-1001\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe [1784664 2023-02-25] (Overwolf Ltd -> Overwolf Ltd.) HKU\S-1-5-21-2599356748-152731439-2733360197-1001\...\Run: [ProtonVPN] => C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPN.exe [8882280 2022-12-14] (Proton Technologies AG -> ProtonVPN) HKU\S-1-5-21-2599356748-152731439-2733360197-1001\...\Run: [utweb] => C:\Users\ibay4\AppData\Roaming\uTorrent Web\utweb.exe [6415008 2022-11-16] (BitTorrent Inc -> BitTorrent Inc.) HKU\S-1-5-21-2599356748-152731439-2733360197-1001\...\Run: [LenovoVantageToolbar] => C:\ProgramData\Lenovo\Vantage\Addins\LenovoBatteryGaugeAddin\1.0.0.62\x64\QSHelper.exe [108832 2023-01-04] (Lenovo -> Lenovo Group Ltd.) HKU\S-1-5-21-2599356748-152731439-2733360197-1001\...\Run: [Voicemod] => C:\Program Files\Voicemod Desktop\VoicemodDesktop.exe [7444312 2022-12-14] (Voicemod Sociedad Limitada -> Voicemod) HKU\S-1-5-21-2599356748-152731439-2733360197-1001\...\Run: [GoogleChromeAutoLaunch_10A37BC40811F4A6465A8B517CE11550] => "C:\Program Files\Google\Chrome\Application\chrome.exe" --no-startup-window /prefetch:5 [3221272 2023-03-04] (Google LLC -> Google LLC) HKU\S-1-5-21-2599356748-152731439-2733360197-1001\...\Run: [Opera Browser Assistant] => C:\Users\ibay4\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [5124000 2023-03-08] (Opera Norway AS -> Opera Software) HKU\S-1-5-21-2599356748-152731439-2733360197-1001\...\Run: [Discord] => C:\Users\ibay4\AppData\Local\Discord\Update.exe [1525016 2023-02-13] (Discord Inc. -> GitHub) HKU\S-1-5-21-2599356748-152731439-2733360197-1001\...\Run: [MicrosoftEdgeAutoLaunch_75EF7157A6792238879620B2CECACA38] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4242384 2023-03-09] (Microsoft Corporation -> Microsoft Corporation) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\111.0.5563.65\Installer\chrmstp.exe [2023-03-13] (Google LLC -> Google LLC) Startup: C:\Users\ibay4\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Mailspring.lnk [2022-01-06] ShortcutTarget: Mailspring.lnk -> C:\Users\ibay4\AppData\Local\Mailspring\Update.exe (Foundry 376, LLC -> ) [Fichier non signé] ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {01892993-FB45-44FD-9BA0-D09B5BFB5FDE} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655336 2022-09-12] (Nvidia Corporation -> NVIDIA Corporation) Task: {0502841A-D397-45D0-9D5A-6C16CEF51CCD} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3342376 2022-09-12] (Nvidia Corporation -> NVIDIA Corporation) Task: {0600DD45-FAF2-4131-A006-0B17509B9F78} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => %windir%\system32\sc.exe start InventorySvc Task: {077E2295-10CE-4BAF-909F-DF61F5FB4283} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26294704 2023-03-05] (Microsoft Corporation -> Microsoft Corporation) Task: {11260441-DA4B-43C5-8108-04D64C9F14C2} - System32\Tasks\Lenovo\Vantage\Schedule\SettingsWidgetAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [28888 2022-11-29] (Lenovo -> Lenovo Group Ltd.) Task: {1636E102-96A3-442E-86C9-6848E3188816} - System32\Tasks\Microsoft\VisualStudio\Updates\UpdateConfiguration_S-1-5-21-2599356748-152731439-2733360197-1001 => C:\Program Files (x86)\Microsoft Visual Studio\Installer\resources\app\ServiceHub\Services\Microsoft.VisualStudio.Setup.Service\VSIXConfigurationUpdater.exe [24528 2022-04-29] (Microsoft Corporation -> Microsoft) Task: {181F0E51-9648-449F-8E57-CAD43BE013E5} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\8b6f25b8-18a9-474f-9231-4118c5874c30 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.) Task: {1917729D-F1EF-432E-B13E-6B845C1F5C70} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26294704 2023-03-05] (Microsoft Corporation -> Microsoft Corporation) Task: {1C2C882B-8EE8-4861-82B6-B0D70ED8F5E3} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => "%windir%\system32\sc.exe" START ImControllerService Task: {20CB7304-98CD-4E3B-BE32-105AE028545F} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2645880 2023-02-25] (Overwolf Ltd -> Overwolf LTD) Task: {2AC46D2D-DCC9-4692-A1B1-109A0C6395C4} - System32\Tasks\Optimize Push Notification Data File-S-1-5-21-2599356748-152731439-2733360197-1001 => {201600D8-6EFF-48CE-B842-E14D37A0682D} C:\WINDOWS\System32\wpninprc.dll [65536 2022-05-07] (Microsoft Windows -> Microsoft Corporation) Task: {30A8617A-B09E-4D2C-80A2-5E768BE4C995} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MpCmdRun.exe [1592184 2023-02-15] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {32AA7714-EDC7-4B91-AB9E-D741A89D3C3E} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\1d8090af-aaad-4b58-a51d-8aa118d166eb => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.) Task: {388FF98E-DA80-4F1F-80AC-9A825EA103FE} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\5145ab6a-1cf5-44cd-9c99-ae5e1f74a2b2 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.) Task: {3E572081-CEBD-48CF-8CC1-61FB1B383E86} - System32\Tasks\Lenovo\UDC\Lenovo UDC Monitor => C:\WINDOWS\system32\drivers\lenovo\udc\data\InfBackup\UdcInfInstaller.exe [186568 2022-11-17] (Lenovo -> Lenovo Group Ltd.) Task: {49C2C358-8A75-4F9B-9C94-4D1C86FC013A} - System32\Tasks\NahimicSvc64Run => C:\Windows\system32\NahimicSvc64.exe [1094840 2021-08-28] (A-Volute SAS -> Nahimic) Task: {4C9EA6F6-6D3A-4A27-88EA-FE558C38ED88} - System32\Tasks\Lenovo\Vantage\Schedule\HeartbeatAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [28888 2022-11-29] (Lenovo -> Lenovo Group Ltd.) Task: {51846D25-3126-473A-9B02-7F0A2FC6A08B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MpCmdRun.exe [1592184 2023-02-15] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {641A88C9-4D1A-4C1E-A086-3388E9D54F2B} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655336 2022-09-12] (Nvidia Corporation -> NVIDIA Corporation) Task: {6F8DCAAF-4D57-434F-948A-53FAE796F8B9} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoCompanionAppAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [28888 2022-11-29] (Lenovo -> Lenovo Group Ltd.) Task: {74194837-5101-4ADB-9DAC-BA241BB94660} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [168840 2023-03-05] (Microsoft Corporation -> Microsoft Corporation) Task: {8003F483-B923-4201-801E-4C466AED15BA} - System32\Tasks\NahimicSvc32Run => C:\Windows\SysWOW64\NahimicSvc32.exe [833720 2021-08-28] (A-Volute SAS -> Nahimic) Task: {80BC46E2-417F-4AC2-8B0F-23CC8148B303} - System32\Tasks\Microsoft\VisualStudio\VSIX Auto Update => C:\Program Files (x86)\Microsoft Visual Studio\Installer\resources\app\ServiceHub\Services\Microsoft.VisualStudio.Setup.Service\VSIXAutoUpdate.exe [193424 2022-04-29] (Microsoft Corporation -> ) Task: {8276E77E-6E11-438B-A806-ED4B922DC364} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => %windir%\System32\reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32 Task: {8543899C-F25A-450E-B41B-690D0B885E6D} - System32\Tasks\Lenovo\Vantage\Schedule\IdeaNotebookAddinDailyEvent => C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [28888 2022-11-29] (Lenovo -> Lenovo Group Ltd.) Task: {85AD14EC-4F92-4CB8-9A13-69A78901C586} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MpCmdRun.exe [1592184 2023-02-15] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {8D776A3C-63B0-44B2-9C2D-6713B953F8FC} - System32\Tasks\Lenovo\Vantage\Schedule\Lenovo.Vantage.SmartPerformance.MonthlyReport => C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [28888 2022-11-29] (Lenovo -> Lenovo Group Ltd.) Task: {A13C5386-7450-4787-B06D-9ED8C4E50178} - System32\Tasks\Lenovo\Vantage\Schedule\GenericMessagingAddin => C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [28888 2022-11-29] (Lenovo -> Lenovo Group Ltd.) Task: {A723BCA1-0105-4F78-AB0E-1ECB5BB447D8} - System32\Tasks\Lenovo\UDC\Lenovo UDC Idle Monitor => C:\windows\system32\drivers\Lenovo\udc\Service\UDCUserAgent.exe [90832 2022-11-17] (Lenovo -> Lenovo Group Ltd.) Task: {C43D9B3F-5EB6-4552-8607-44234FED2937} - System32\Tasks\Lenovo\Vantage\Schedule\DailyTelemetryTransmission => C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [28888 2022-11-29] (Lenovo -> Lenovo Group Ltd.) Task: {C4FEFCA0-DDEA-4D52-968A-FBECB87B18BE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MpCmdRun.exe [1592184 2023-02-15] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {C78F9B38-F5C2-4DE0-92EF-31508550EBB9} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144280 2023-03-05] (Microsoft Corporation -> Microsoft Corporation) Task: {D0AC928D-8A86-456E-B35C-8251446A5E70} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\WINDOWS\system32\ImController.InfInstaller.exe [74952 2022-11-20] (Lenovo -> Lenovo Group Ltd.) Task: {D6249088-959E-479E-9CD5-3E96A4ED715B} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoSystemUpdateAddin_WeeklyTask => C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [28888 2022-11-29] (Lenovo -> Lenovo Group Ltd.) Task: {D6DAE195-88E4-4D00-A838-3A4B3FBAD392} - System32\Tasks\Lenovo\Vantage\Lenovo.Vantage.ServiceMaintainance => %systemroot%\system32\sc.exe start LenovoVantageService Task: {D986D385-B1F7-4AC2-86CA-039F5D0E39E8} - System32\Tasks\Lenovo\Vantage\Schedule\BatteryGaugeAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [28888 2022-11-29] (Lenovo -> Lenovo Group Ltd.) Task: {D9F46ED4-840A-41BE-A898-0A6CB9CED3C6} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655336 2022-09-12] (Nvidia Corporation -> NVIDIA Corporation) Task: {DDD9A0AC-B7C5-46DB-989D-D59048531D9E} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655336 2022-09-12] (Nvidia Corporation -> NVIDIA Corporation) Task: {EC25535D-6520-4504-A0C9-E872C605F974} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649256 2022-09-12] (Nvidia Corporation -> NVIDIA Corporation) Task: {F25ECA15-B833-4ACD-A204-8961262E8AD8} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\65c5c384-1b37-4cad-9c8c-2d080d91524f => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.) Task: {F8985910-E24B-4E27-8286-B4D0EB8AD0E5} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2022-03-01] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {FA2E3A0D-54CE-46CF-AC09-0293C8DD2DA0} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144280 2023-03-05] (Microsoft Corporation -> Microsoft Corporation) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 195.221.244.104 195.221.244.106 Tcpip\..\Interfaces\{28701fba-9554-4c07-af34-852c5b7c93a2}: [DhcpNameServer] 195.221.244.104 195.221.244.106 Tcpip\..\Interfaces\{34e1a63f-f725-4fe9-85ea-312b83bf94de}: [DhcpNameServer] 194.168.4.100 194.168.8.100 Tcpip\..\Interfaces\{b2efdb3d-1459-4c15-8aea-e806baecc25a}: [DhcpNameServer] 10.245.0.1 Tcpip\..\Interfaces\{c2b9bb96-4594-4e69-a925-39a4b32ef240}: [DhcpNameServer] 10.188.0.1 Edge: ======= Edge Profile: C:\Users\ibay4\AppData\Local\Microsoft\Edge\User Data\Default [2023-03-16] FireFox: ======== FF DefaultProfile: 0j19p3vj.default FF ProfilePath: C:\Users\ibay4\AppData\Roaming\Mozilla\Firefox\Profiles\0j19p3vj.default [2023-03-15] FF ProfilePath: C:\Users\ibay4\AppData\Roaming\Mozilla\Firefox\Profiles\zqciojdp.default-release [2023-03-15] FF NetworkProxy: Mozilla\Firefox\Profiles\zqciojdp.default-release -> backup.ssl", "localhost" FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-11-03] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-11-03] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @videolan.org/vlc,version=3.0.16 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN) Chrome: ======= CHR Profile: C:\Users\ibay4\AppData\Local\Google\Chrome\User Data\Default [2023-03-16] CHR Session Restore: Default -> est activé. CHR Extension: (uBlock Origin) - C:\Users\ibay4\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2023-03-14] CHR Extension: (Google Docs hors connexion) - C:\Users\ibay4\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-03-14] CHR Extension: (Selenium IDE) - C:\Users\ibay4\AppData\Local\Google\Chrome\User Data\Default\Extensions\mooikfkahbdckldjjndioackbalphokd [2022-10-20] CHR Extension: (Helium 10) - C:\Users\ibay4\AppData\Local\Google\Chrome\User Data\Default\Extensions\njmehopjdpcckochcggncklnlmikcbnb [2023-03-14] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\ibay4\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-01-21] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8885112 2022-06-24] (BattlEye Innovations e.K. -> ) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12512256 2023-03-05] (Microsoft Corporation -> Microsoft Corporation) R2 CorsairGamingAudioConfig; C:\WINDOWS\system32\CorsairGamingAudioCfgService64.exe [613968 2022-11-02] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) R2 CorsairLLAService; C:\Program Files\Corsair\CORSAIR iCUE 4 Software\CueLLAccessService.exe [238632 2022-11-02] (Corsair Memory, Inc. -> Corsair Memory, Inc.) R2 CorsairService; C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.exe [84008 2022-11-02] (Corsair Memory, Inc. -> Corsair Memory, Inc.) S2 CorsairUniwillService; C:\Program Files\Corsair\CORSAIR iCUE 4 Software\CueUniwillService.exe [108072 2022-11-02] (Corsair Memory, Inc. -> Corsair Memory, Inc.) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [811496 2022-06-27] (EasyAntiCheat Oy -> Epic Games, Inc) S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [16029456 2022-06-27] (Epic Games Inc. -> Epic Games, Inc.) S3 GameforgeClientService; C:\Program Files (x86)\GameforgeClient\gfservice.exe [636480 2022-12-06] (Gameforge 4D GmbH -> ) R3 iCUEDevicePluginHost; C:\Program Files\Corsair\CORSAIR iCUE 4 Software\iCUEDevicePluginHost.exe [459816 2022-11-02] (Corsair Memory, Inc. -> Corsair) R2 ImControllerService; C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.) R3 InventorySvc; C:\WINDOWS\system32\inventorysvc.dll [304480 2022-10-11] (Microsoft Windows -> Microsoft Corporation) R2 LenovoFnAndFunctionKeys; C:\WINDOWS\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_cd446641b2a10fd9\LenovoUtilityService.exe [279264 2023-01-13] (Lenovo -> Lenovo(beijing) Limited) R2 LenovoVantageService; C:\Program Files (x86)\Lenovo\VantageService\\3.13.43.0\LenovoVantageService.exe [32464 ] (Lenovo -> Lenovo Group Ltd.) S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [9084512 2023-03-15] (Malwarebytes Inc. -> Malwarebytes) R2 MongoDB; C:\Program Files\MongoDB\Server\4.4\bin\mongod.exe [38160896 2020-09-08] (MongoDB, Inc) [Fichier non signé] R2 NahimicService; C:\WINDOWS\system32\NahimicService.exe [1888440 2021-08-28] (A-Volute SAS -> Nahimic) S3 OverwolfUpdater; C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2645880 2023-02-25] (Overwolf Ltd -> Overwolf LTD) S3 ProtonVPN Service; C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPNService.exe [401512 2022-12-14] (Proton Technologies AG -> ProtonVPN) S3 ProtonVPN WireGuard; C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPN.WireGuardService.exe [328808 2022-12-14] (Proton Technologies AG -> ProtonVPN) R2 SgrmBroker; C:\WINDOWS\system32\Sgrm\SgrmBroker.exe [414632 2022-05-07] (Microsoft Windows Publisher -> Microsoft Corporation) R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [16187368 2022-05-11] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) R2 TextInputManagementService; C:\WINDOWS\System32\TabSvc.dll [266240 2022-10-11] (Microsoft Windows -> Microsoft Corporation) R2 UDCService; C:\WINDOWS\system32\DRIVERS\Lenovo\udc\Service\UDClientService.exe [72912 2022-11-17] (Lenovo -> Lenovo Group Ltd.) S3 VBoxSDS; C:\Program Files\Oracle\VirtualBox\VBoxSDS.exe [749136 2022-09-01] (Oracle Corporation -> Oracle Corporation) S3 VSStandardCollectorService150; C:\Program Files (x86)\Microsoft Visual Studio\Shared\Common\DiagnosticsHub.Collection.Service\StandardCollector.Service.exe [147392 2019-04-30] (Microsoft Corporation -> Microsoft Corporation) S3 wampapache64; c:\wamp64\bin\apache\apache2.4.51\bin\httpd.exe [29696 2021-10-07] (Apache Software Foundation) [Fichier non signé] S3 wampmariadb64; c:\wamp64\bin\mariadb\mariadb10.6.5\bin\mysqld.exe [32744 2021-11-06] (MariaDB Corporation Ab -> ) S3 wampmysqld64; c:\wamp64\bin\mysql\mysql5.7.36\bin\mysqld.exe [42024736 2021-09-07] (Oracle America, Inc. -> ) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\NisSrv.exe [3191256 2023-02-15] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MsMpEng.exe [133576 2023-02-15] (Microsoft Windows Publisher -> Microsoft Corporation) R3 wuauserv; C:\WINDOWS\system32\wuauserv.dll [137600 2023-02-15] (Microsoft Windows -> Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvlt.inf_amd64_ff61f7ab5e75eb51\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvlt.inf_amd64_ff61f7ab5e75eb51\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 900abadc; C:\WINDOWS\System32\Drivers\900abadc.sys [299544 2023-03-15] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab) R3 amdfendrmgr; C:\WINDOWS\System32\drivers\amdfendrmgr.sys [35344 2022-09-09] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) R3 amdwddmg; C:\WINDOWS\System32\DriverStore\FileRepository\u0383722.inf_amd64_5cbaacf42cbd3812\B383240\amdkmdag.sys [94462328 2022-09-21] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) R2 bfs; C:\WINDOWS\system32\drivers\bfs.sys [91480 2022-10-11] (Microsoft Windows -> Microsoft Corporation) S3 CorsairGamingAudioService; C:\WINDOWS\system32\DRIVERS\CorsairGamingAudio64.sys [63008 2022-11-02] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) R2 CorsairLLAccessC2D033F14715AA7325305EA42FBFC65BF867CC1D; C:\Program Files\Corsair\CORSAIR iCUE 4 Software\CorsairLLAccess64.sys [21752 2022-11-02] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) R3 CorsairVBusDriver; C:\WINDOWS\System32\drivers\CorsairVBusDriver.sys [47032 2022-11-02] (Microsoft Windows Hardware Compatibility Publisher -> Corsair) R3 CorsairVHidDriver; C:\WINDOWS\System32\drivers\CorsairVHidDriver.sys [22968 2022-11-02] (Microsoft Windows Hardware Compatibility Publisher -> Corsair) R3 cpuz154; C:\WINDOWS\temp\cpuz154\cpuz154_x64.sys [40976 2023-03-16] (Microsoft Windows Hardware Compatibility Publisher -> CPUID) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [160376 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R1 dokan1; C:\WINDOWS\System32\DRIVERS\dokan1.sys [138760 2021-01-14] (ADAPP SASU -> Dokan Project) S3 FBNetFilter; C:\WINDOWS\System32\drivers\FBNetFlt.sys [64832 2022-04-08] (LENOVO (UNITED STATES) INC. -> Lenovo Group Ltd.) S0 GenPass; C:\WINDOWS\System32\DriverStore\FileRepository\genpass.inf_amd64_bef88a423225ecdc\genpass.sys [62800 2022-05-07] (Microsoft Windows -> Microsoft Corporation) S1 gvm; C:\WINDOWS\system32\DRIVERS\gvm.sys [393712 2022-01-03] (Google LLC -> Google LLC) R3 hanvonugeemfilter; C:\WINDOWS\System32\drivers\hanvonugeemfilter.sys [9728 2021-10-07] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) S3 klupd_900abadca_arkmon_884A2DE3; C:\KVRT2020_Data\Temp\884A2DE375AE76CB792BE5F52BE82064\klupd_900abadca_arkmon.sys [353896 2023-03-15] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [223176 2023-03-15] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2022-10-13] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) S3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239544 2023-02-18] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MTKBTFilterX64; C:\WINDOWS\system32\DRIVERS\mtkbtfilterx.sys [286424 2022-05-13] (MEDIATEK INC. -> MediaTek Inc.) R3 mtkwlex; C:\WINDOWS\System32\drivers\mtkwl6ex.sys [1439976 2022-05-15] (MEDIATEK INC. -> MediaTek Inc.) S3 NahimicBTLink; C:\WINDOWS\System32\drivers\NahimicBTLink.sys [86200 2022-08-18] (A-Volute SAS -> Windows (R) Win 7 DDK provider) S3 Nahimic_Mirroring; C:\WINDOWS\System32\drivers\Nahimic_Mirroring.sys [85616 2021-08-13] (A-Volute -> Windows (R) Win 7 DDK provider) R3 NvModuleTracker; C:\WINDOWS\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [45656 2022-07-13] (Nvidia Corporation -> NVIDIA Corporation) R3 nvpcf; C:\WINDOWS\System32\drivers\nvpcf.sys [231944 2022-10-08] (Nvidia Corporation -> NVIDIA Corporation) S3 ProtonVPNCallout; C:\Program Files (x86)\Proton Technologies\ProtonVPN\x64\Win10\ProtonVPN.CalloutDriver.sys [34176 2022-10-07] (Microsoft Windows Hardware Compatibility Publisher -> Proton Technologies AG) S0 pvscsi; C:\WINDOWS\System32\drivers\pvscsii.sys [45408 2022-05-07] (Microsoft Windows -> VMware, Inc.) S3 RoutePolicy; C:\WINDOWS\System32\drivers\RoutePolicy.sys [98304 2022-05-07] (Microsoft Windows -> ) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167544 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R3 tapprotonvpn; C:\WINDOWS\System32\drivers\tapprotonvpn.sys [49024 2022-07-04] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project) R1 VBoxNetLwf; C:\WINDOWS\system32\DRIVERS\VBoxNetLwf.sys [252528 2022-09-01] (Oracle Corporation -> Oracle Corporation) R1 VBoxSup; C:\WINDOWS\system32\DRIVERS\VBoxSup.sys [1081560 2022-09-01] (Oracle Corporation -> Oracle Corporation) S3 VCamSDK; C:\WINDOWS\system32\DRIVERS\VCamSDK.sys [1092456 2023-01-20] (Shanghai Yitu Information Technology Co., Ltd. -> e2eSoft) R3 VOICEMOD_Driver; C:\WINDOWS\system32\drivers\mvvad.sys [48144 2022-07-26] (Voicemod Sociedad Limitada -> Windows (R) Win 7 DDK provider) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49576 2023-02-15] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [473336 2023-02-15] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [99576 2023-02-15] (Microsoft Windows -> Microsoft Corporation) R3 wintun; C:\WINDOWS\system32\DRIVERS\wintun.sys [29680 2022-10-26] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC) S3 WireGuard; C:\WINDOWS\System32\drivers\wireguard.sys [489368 2022-10-26] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC) R2 wtd; C:\WINDOWS\System32\drivers\wtd.sys [118784 2022-12-13] (Microsoft Windows -> Microsoft Corporation) R3 XPPenTablet; C:\WINDOWS\System32\drivers\XPPenTablet.sys [10752 2021-10-07] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2023-03-16 13:48 - 2023-03-16 13:48 - 000037690 _____ C:\Users\ibay4\Desktop\FRST.txt 2023-03-16 13:46 - 2023-03-16 13:46 - 000443305 _____ C:\Users\ibay4\Desktop\ZHPDiag.txt 2023-03-16 13:43 - 2023-03-16 13:43 - 000809482 _____ C:\WINDOWS\system32\perfh00C.dat 2023-03-16 13:43 - 2023-03-16 13:43 - 000156934 _____ C:\WINDOWS\system32\perfc00C.dat 2023-03-16 11:25 - 2023-03-16 11:25 - 000023737 _____ C:\Users\ibay4\Downloads\json-simple-1.1.1.jar 2023-03-15 20:32 - 2023-03-15 20:32 - 000002032 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2023-03-15 20:31 - 2023-03-15 20:31 - 002580896 _____ (Malwarebytes) C:\Users\ibay4\Downloads\MBSetup.exe 2023-03-15 18:39 - 2023-03-15 18:39 - 000000028 ____H C:\.GamingRoot 2023-03-15 14:59 - 2023-03-15 15:42 - 000000000 ____D C:\Users\ibay4\.webgoat-2023.4 2023-03-15 14:56 - 2023-03-15 14:56 - 101947142 _____ C:\Users\ibay4\Downloads\webgoat-2023.4.jar 2023-03-15 14:14 - 2023-03-15 14:14 - 000000000 ____D C:\KVRT2020_Data 2023-03-15 14:12 - 2023-03-15 14:14 - 097468248 _____ (AO Kaspersky Lab) C:\Users\ibay4\Downloads\KVRT.exe 2023-03-15 13:59 - 2023-03-16 13:37 - 000000000 ____D C:\Users\ibay4\AppData\Local\Discord 2023-03-15 13:59 - 2023-03-15 13:59 - 000002240 _____ C:\Users\ibay4\Desktop\Discord.lnk 2023-03-15 13:58 - 2023-03-15 13:59 - 083185944 _____ (Discord Inc.) C:\Users\ibay4\Downloads\DiscordSetup (1).exe 2023-03-15 13:57 - 2023-03-15 13:57 - 000000113 _____ C:\Users\ibay4\AppData\Roaming\D2Info0 2023-03-15 13:57 - 2023-03-15 13:57 - 000000008 _____ C:\Users\ibay4\AppData\Roaming\DofusAppId0_1 2023-03-15 10:43 - 2023-03-15 10:43 - 000000000 ____D C:\Users\ibay4\AppData\Local\Opera Software 2023-03-15 10:41 - 2023-03-15 10:41 - 000000000 ____D C:\Users\ibay4\AppData\Roaming\Opera Software 2023-03-15 10:40 - 2023-03-15 10:40 - 098645984 _____ (Opera Software) C:\Users\ibay4\Downloads\Opera_96.0.4693.50_Setup_x64.exe 2023-03-15 09:32 - 2023-03-16 13:48 - 000000000 ____D C:\FRST 2023-03-15 09:26 - 2023-03-15 09:26 - 002378752 _____ (Farbar) C:\Users\ibay4\Desktop\FRST64.exe 2023-03-15 09:25 - 2023-03-15 09:25 - 003514056 _____ (Nicolas Coolman) C:\Users\ibay4\Downloads\ZHPSuite.exe 2023-03-15 09:25 - 2023-03-15 09:25 - 000000876 _____ C:\Users\ibay4\Desktop\ZHPSuite.lnk 2023-03-15 00:50 - 2023-03-15 13:59 - 000000000 ____D C:\Users\ibay4\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc 2023-03-15 00:50 - 2023-03-15 00:50 - 083185944 _____ (Discord Inc.) C:\Users\ibay4\Downloads\DiscordSetup.exe 2023-03-14 23:58 - 2023-03-14 23:58 - 000000886 _____ C:\Users\ibay4\Desktop\ZHPCleaner.lnk 2023-03-14 23:57 - 2023-03-15 00:44 - 000000000 ____D C:\AdwCleaner 2023-03-14 23:57 - 2023-03-14 23:57 - 003306696 _____ (Nicolas Coolman) C:\Users\ibay4\Downloads\ZHPCleaner.exe 2023-03-14 23:56 - 2023-03-14 23:56 - 008791352 _____ (Malwarebytes) C:\Users\ibay4\Downloads\adwcleaner_8.4.0.exe 2023-03-14 23:54 - 2023-03-14 23:54 - 000000869 _____ C:\Users\ibay4\Desktop\ZHPFix2.lnk 2023-03-14 23:50 - 2023-03-14 23:50 - 000408216 _____ C:\Users\ibay4\Downloads\ZHPDiag.txt 2023-03-14 23:49 - 2023-03-14 23:49 - 001772744 _____ (Nicolas Coolman) C:\Users\ibay4\Downloads\ZHPFix2.exe 2023-03-14 23:38 - 2023-03-16 13:46 - 000000000 ____D C:\Users\ibay4\AppData\Roaming\ZHP 2023-03-14 23:38 - 2023-03-15 09:25 - 000000000 ____D C:\Users\ibay4\AppData\Local\ZHP 2023-03-14 23:38 - 2023-03-14 23:38 - 000000876 _____ C:\Users\ibay4\Desktop\ZHPDiag.lnk 2023-03-14 23:23 - 2023-03-14 23:23 - 003315400 _____ (Nicolas Coolman) C:\Users\ibay4\Downloads\ZHPDiag3.exe 2023-03-14 23:18 - 2023-03-15 20:35 - 000000000 ____D C:\Users\ibay4\AppData\LocalLow\IGDump 2023-03-14 23:09 - 2023-03-15 10:00 - 000000000 ___HD C:\Users\ibay4\Downloads\.opera 2023-03-14 23:09 - 2023-03-15 10:00 - 000000000 ___HD C:\Users\ibay4\.opera 2023-03-14 23:03 - 2023-03-16 13:35 - 000001607 _____ C:\WINDOWS\system32\config\VSMIDK 2023-03-14 21:48 - 2023-03-14 21:48 - 000001420 _____ C:\Users\ibay4\Desktop\Navigateur Opera.lnk.1678873307.old 2023-03-13 21:36 - 2023-03-13 21:36 - 029010904 _____ (Python Software Foundation) C:\Users\ibay4\Downloads\python-3.10.10-amd64.exe 2023-03-13 21:36 - 2023-03-13 21:36 - 000000000 ____D C:\Users\ibay4\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Python 3.10 2023-03-09 17:44 - 2023-03-09 17:44 - 000000222 _____ C:\Users\ibay4\Desktop\Among Us.url 2023-03-09 17:44 - 2023-03-09 17:44 - 000000000 ____D C:\Users\ibay4\AppData\LocalLow\Innersloth 2023-03-07 18:01 - 2023-03-07 18:01 - 000000000 ____D C:\WINDOWS\Minidump 2023-03-06 01:44 - 2023-03-06 01:44 - 000000000 ____D C:\Users\ibay4\AppData\Roaming\Goldberg SteamEmu Saves 2023-03-06 01:44 - 2023-03-06 01:44 - 000000000 ____D C:\Users\ibay4\AppData\Local\Paralogue 2023-03-06 01:00 - 2023-03-06 01:00 - 000000000 ____D C:\Users\ibay4\AppData\Roaming\Proton Technologies AG 2023-03-06 01:00 - 2023-03-06 01:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ProtonVPN 2023-03-03 13:47 - 2023-03-16 11:51 - 000142948 _____ C:\Users\ibay4\Downloads\TP_Ibrahim_Hamdaoui.zip 2023-03-03 13:47 - 2023-03-16 11:47 - 000000000 ____D C:\Users\ibay4\Downloads\automationTest2 2023-03-03 12:09 - 2023-03-03 12:09 - 000000000 ___HD C:\$WinREAgent 2023-03-03 11:16 - 2023-03-03 11:16 - 006063372 _____ C:\Users\ibay4\Downloads\Livraison022023.rar 2023-03-01 21:50 - 2023-03-01 21:50 - 000399853 _____ C:\Users\ibay4\Downloads\JdR (1).mp4 2023-03-01 21:47 - 2023-03-01 21:47 - 000205611 _____ C:\Users\ibay4\Downloads\JdR.mp4 2023-03-01 11:46 - 2023-03-01 11:46 - 000000000 ____D C:\Users\ibay4\AppData\Local\kotlin 2023-03-01 11:26 - 2023-03-01 11:30 - 988630456 _____ (Google LLC) C:\Users\ibay4\Downloads\android-studio-2022.1.1.21-windows.exe 2023-02-27 21:34 - 2023-03-05 01:27 - 000000620 _____ C:\Users\ibay4\Desktop\Stuff.txt 2023-02-27 16:17 - 2023-02-27 16:17 - 000768828 _____ C:\Users\ibay4\Downloads\TD7.pdf 2023-02-16 18:02 - 2022-07-13 18:32 - 000060112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvhci.sys 2023-02-16 18:00 - 2022-11-16 04:39 - 002237032 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2023-02-16 18:00 - 2022-11-16 04:39 - 002237032 _____ C:\WINDOWS\system32\vulkaninfo.exe 2023-02-16 18:00 - 2022-11-16 04:39 - 001642568 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2023-02-16 18:00 - 2022-11-16 04:39 - 001642568 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2023-02-16 18:00 - 2022-11-16 04:39 - 001444456 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2023-02-16 18:00 - 2022-11-16 04:39 - 001444456 _____ C:\WINDOWS\system32\vulkan-1.dll 2023-02-16 18:00 - 2022-11-16 04:39 - 001227304 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2023-02-16 18:00 - 2022-11-16 04:39 - 001168992 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2023-02-16 18:00 - 2022-11-16 04:39 - 001168992 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2023-02-16 17:59 - 2022-11-16 04:35 - 001531880 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2023-02-16 17:59 - 2022-11-16 04:35 - 001191936 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2023-02-16 17:59 - 2022-11-16 04:35 - 000869360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll 2023-02-16 17:59 - 2022-11-16 04:35 - 000671216 _____ C:\WINDOWS\system32\nvofapi64.dll 2023-02-16 17:59 - 2022-11-16 04:35 - 000506872 _____ C:\WINDOWS\SysWOW64\nvofapi.dll 2023-02-16 17:59 - 2022-11-16 04:34 - 002162688 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2023-02-16 17:59 - 2022-11-16 04:34 - 001618920 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2023-02-16 17:59 - 2022-11-16 04:34 - 000949752 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2023-02-16 17:59 - 2022-11-16 04:34 - 000746536 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe 2023-02-16 17:59 - 2022-11-16 04:34 - 000734192 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2023-02-16 17:59 - 2022-11-16 04:33 - 012452848 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2023-02-16 17:59 - 2022-11-16 04:33 - 010220024 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2023-02-16 17:59 - 2022-11-16 04:33 - 005891120 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2023-02-16 17:59 - 2022-11-16 04:33 - 005856792 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcudadebugger.dll 2023-02-16 17:59 - 2022-11-16 04:33 - 000457704 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe 2023-02-16 17:59 - 2022-11-16 04:32 - 005816344 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2023-02-16 17:59 - 2022-11-16 04:32 - 000852984 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe 2023-02-16 17:59 - 2022-11-16 04:30 - 006516480 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2023-02-16 17:59 - 2022-11-01 02:16 - 000100653 _____ C:\WINDOWS\system32\nvinfo.pb 2023-02-16 17:58 - 2022-09-29 17:05 - 000438688 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdtee_api.dll 2023-02-16 17:58 - 2022-09-29 17:05 - 000352160 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdtee_api.dll 2023-02-16 17:58 - 2022-09-29 17:05 - 000052128 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\Drivers\amdpsp.sys 2023-02-16 17:58 - 2022-09-17 01:58 - 000085136 _____ (Advanced Micro Devices, Inc) C:\WINDOWS\system32\Drivers\amdi2c.sys ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2023-03-16 13:47 - 2022-05-07 06:24 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2023-03-16 13:43 - 2022-10-05 18:42 - 001803986 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2023-03-16 13:43 - 2022-05-07 06:22 - 000000000 ____D C:\WINDOWS\INF 2023-03-16 13:41 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SystemTemp 2023-03-16 13:39 - 2021-12-11 15:08 - 000000000 ____D C:\Users\ibay4\AppData\Roaming\discord 2023-03-16 13:38 - 2022-01-21 07:41 - 000000000 ____D C:\Program Files (x86)\Google 2023-03-16 13:37 - 2021-09-27 04:38 - 000000000 ____D C:\ProgramData\NVIDIA 2023-03-16 13:36 - 2022-10-05 18:37 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2023-03-16 13:36 - 2022-10-05 18:33 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2023-03-16 13:36 - 2022-05-25 22:19 - 000000000 ____D C:\Program Files\TeamViewer 2023-03-16 13:36 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\ServiceState 2023-03-16 13:36 - 2021-06-23 19:44 - 000012288 ___SH C:\DumpStack.log.tmp 2023-03-16 11:58 - 2022-03-13 14:13 - 000000000 ____D C:\Users\ibay4\AppData\Roaming\Ankama Launcher 2023-03-16 11:08 - 2021-12-11 16:18 - 000000000 ____D C:\Users\ibay4\AppData\Roaming\WhatsApp 2023-03-16 11:03 - 2023-02-09 15:51 - 000000000 ____D C:\Users\ibay4\AppData\Roaming\appium-inspector 2023-03-16 09:59 - 2022-03-13 14:13 - 000000000 ____D C:\Users\ibay4\AppData\Roaming\zaap 2023-03-16 09:20 - 2022-01-03 11:31 - 000000000 ____D C:\Users\ibay4\.android 2023-03-16 09:20 - 2021-12-11 20:23 - 000000000 ____D C:\Users\ibay4\AppData\Local\CrashDumps 2023-03-16 09:17 - 2022-05-07 06:24 - 000000000 ___HD C:\Program Files\WindowsApps 2023-03-16 09:17 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\AppReadiness 2023-03-16 09:16 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\SecurityHealth 2023-03-16 09:11 - 2022-10-25 08:39 - 000000000 ____D C:\Users\ibay4\AppData\Roaming\appium-desktop 2023-03-15 20:32 - 2022-10-13 08:07 - 000002044 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2023-03-15 20:31 - 2022-10-13 08:06 - 000000000 ____D C:\ProgramData\Malwarebytes 2023-03-15 20:31 - 2022-10-13 08:06 - 000000000 ____D C:\Program Files\Malwarebytes 2023-03-15 18:39 - 2022-05-12 19:03 - 000000000 ____D C:\XboxGames 2023-03-15 14:59 - 2022-10-05 18:34 - 000000000 ____D C:\Users\ibay4 2023-03-15 13:59 - 2021-12-11 15:08 - 000000000 ____D C:\Users\ibay4\AppData\Local\SquirrelTemp 2023-03-15 13:57 - 2022-03-13 14:38 - 000000000 ____D C:\Users\ibay4\AppData\Roaming\Dofus 2023-03-15 13:56 - 2023-02-06 10:17 - 000002432 _____ C:\Users\ibay4\Desktop\&.lnk 2023-03-15 10:41 - 2021-11-28 19:29 - 000001410 _____ C:\Users\ibay4\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navigateur Opera.lnk 2023-03-15 10:36 - 2022-10-05 18:33 - 000576184 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2023-03-15 10:35 - 2022-05-07 06:17 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2023-03-15 10:30 - 2021-12-23 10:58 - 000000000 ____D C:\Users\ibay4\AppData\LocalLow\Temp 2023-03-15 10:28 - 2023-02-02 11:51 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2023-03-15 10:24 - 2021-12-11 12:30 - 000000000 ____D C:\Program Files (x86)\Steam 2023-03-15 00:08 - 2022-01-21 07:41 - 000000000 ____D C:\Program Files\Google 2023-03-14 22:47 - 2021-11-28 19:29 - 000001410 _____ C:\Users\ibay4\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navigateur Opera.lnk.1678873307.old 2023-03-14 21:48 - 2021-11-28 19:29 - 000001410 _____ C:\Users\ibay4\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navigateur Opera.lnk.1678830468.old 2023-03-14 21:17 - 2021-11-28 19:29 - 000001410 _____ C:\Users\ibay4\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navigateur Opera.lnk.1678826938.old 2023-03-14 16:25 - 2021-11-28 19:29 - 000001428 _____ C:\Users\ibay4\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navigateur Opera.lnk.1678825026.old 2023-03-13 21:48 - 2022-01-21 07:41 - 000002256 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2023-03-13 21:36 - 2023-02-01 11:15 - 000000000 ____D C:\Users\ibay4\AppData\Local\Package Cache 2023-03-13 20:41 - 2021-11-28 19:25 - 000000000 ____D C:\Users\ibay4\AppData\Local\D3DSCache 2023-03-13 17:51 - 2021-11-28 19:35 - 000000000 ____D C:\ProgramData\Riot Games 2023-03-13 01:35 - 2022-01-19 15:22 - 000000000 ____D C:\Program Files (x86)\Overwolf 2023-03-11 23:48 - 2021-06-23 19:45 - 000002455 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2023-03-11 23:47 - 2022-10-05 18:37 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2599356748-152731439-2733360197-1001 2023-03-11 23:47 - 2022-10-05 18:37 - 000003378 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2599356748-152731439-2733360197-1001 2023-03-11 23:47 - 2021-11-28 19:27 - 000002428 _____ C:\Users\ibay4\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2023-03-09 20:48 - 2022-05-25 22:08 - 000000000 ____D C:\Users\ibay4\AppData\Local\WhatsApp 2023-03-09 17:44 - 2021-12-11 12:38 - 000000000 ____D C:\Users\ibay4\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2023-03-09 14:35 - 2023-01-06 10:52 - 000000000 ____D C:\Users\ibay4\AppData\Roaming\Brotato 2023-03-08 19:47 - 2022-01-03 12:40 - 000000000 ____D C:\Users\ibay4\AppData\Roaming\Code 2023-03-08 10:52 - 2021-11-28 19:25 - 000000000 ____D C:\Users\ibay4\AppData\Local\Packages 2023-03-08 10:52 - 2021-11-28 19:25 - 000000000 ____D C:\ProgramData\Packages 2023-03-07 21:49 - 2021-12-11 16:38 - 000000000 ____D C:\Users\ibay4\AppData\Roaming\obs-studio 2023-03-07 18:01 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2023-03-07 18:01 - 2021-09-27 04:29 - 002229486 ____N C:\WINDOWS\Minidump\030723-9375-01.dmp 2023-03-07 09:46 - 2022-10-05 18:37 - 000003690 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2023-03-07 09:46 - 2022-10-05 18:37 - 000003566 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2023-03-06 18:35 - 2021-09-27 04:32 - 000000000 ____D C:\Program Files\Microsoft Office 2023-03-06 02:18 - 2022-11-14 21:52 - 000000000 ____D C:\Users\ibay4\AppData\Roaming\uTorrent Web 2023-03-06 01:43 - 2021-12-12 18:37 - 000000000 ____D C:\Users\ibay4\AppData\Roaming\EasyAntiCheat 2023-03-06 01:41 - 2022-11-14 21:53 - 000000000 ____D C:\Users\ibay4\AppData\Local\BitTorrentHelper 2023-03-06 01:00 - 2022-10-26 14:37 - 000000000 ____D C:\Users\ibay4\AppData\Local\ProtonVPN 2023-03-06 01:00 - 2022-10-26 14:37 - 000000000 ____D C:\Program Files (x86)\Proton Technologies 2023-03-03 12:09 - 2022-05-07 06:17 - 000000000 ____D C:\WINDOWS\CbsTemp 2023-03-03 11:17 - 2023-01-09 11:19 - 000000000 ____D C:\bin 2023-03-03 11:02 - 2022-01-03 12:33 - 000000000 ____D C:\Users\ibay4\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Visual Studio Code 2023-03-01 11:52 - 2022-10-26 08:57 - 000000000 ____D C:\Users\ibay4\AndroidStudioProjects 2023-03-01 11:32 - 2022-01-03 10:26 - 000000000 ____D C:\Users\ibay4\AppData\Roaming\Google 2023-03-01 11:32 - 2022-01-03 10:26 - 000000000 ____D C:\Users\ibay4\AppData\Local\Google 2023-03-01 11:31 - 2022-01-03 10:26 - 000000000 ____D C:\Program Files\Android 2023-03-01 09:46 - 2022-09-14 08:39 - 000000000 ____D C:\Users\ibay4\AppData\LocalLow\Mozilla 2023-03-01 09:46 - 2022-09-14 08:39 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2023-02-24 13:24 - 2022-10-26 08:49 - 000079328 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamehelper.exe 2023-02-24 13:24 - 2022-10-26 08:49 - 000062944 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamecontrol.exe 2023-02-24 13:24 - 2022-01-09 15:39 - 002807248 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll 2023-02-24 13:24 - 2022-01-09 15:39 - 000476624 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll 2023-02-24 13:24 - 2022-01-09 15:39 - 000243152 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy.dll 2023-02-24 13:24 - 2022-01-09 15:39 - 000198096 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll 2023-02-24 13:24 - 2022-01-09 15:39 - 000165344 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll 2023-02-24 13:24 - 2022-01-09 15:39 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll 2023-02-24 08:37 - 2022-10-18 08:30 - 000000000 ____D C:\Users\ibay4\.p2 2023-02-23 19:53 - 2021-09-27 04:32 - 000000000 ____D C:\WINDOWS\TempInst 2023-02-21 23:03 - 2022-09-24 16:27 - 000000000 ____D C:\Users\ibay4\AppData\Roaming\StardewValley 2023-02-18 14:03 - 2022-10-13 08:07 - 000239544 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2023-02-16 18:02 - 2022-10-05 18:37 - 000004308 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2023-02-16 18:02 - 2022-10-05 18:37 - 000003976 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2023-02-16 18:02 - 2022-10-05 18:37 - 000003940 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2023-02-16 18:02 - 2022-10-05 18:37 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2023-02-16 18:02 - 2022-10-05 18:37 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2023-02-16 18:02 - 2022-10-05 18:37 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2023-02-16 18:02 - 2022-10-05 18:37 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2023-02-16 18:02 - 2021-11-28 19:25 - 000000000 ____D C:\Users\ibay4\AppData\Local\NVIDIA Corporation 2023-02-16 18:02 - 2021-09-27 04:38 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2023-02-16 18:02 - 2021-09-27 04:38 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2023-02-16 18:02 - 2021-09-27 04:38 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2023-02-16 17:49 - 2022-05-07 06:24 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2023-02-16 17:49 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\UUS 2023-02-16 17:49 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SystemResources 2023-02-16 17:49 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\setup 2023-02-16 17:49 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\oobe 2023-02-16 17:49 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2023-02-16 17:49 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\bcastdvr 2023-02-15 17:11 - 2021-12-10 09:05 - 000000000 ____D C:\WINDOWS\system32\MRT 2023-02-15 17:09 - 2021-12-10 09:05 - 149955784 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2023-02-15 17:07 - 2022-10-05 18:35 - 003212800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2023-02-15 12:14 - 2021-06-23 19:44 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd ==================== Fichiers à la racine de certains dossiers ======== 2023-03-15 13:57 - 2023-03-15 13:57 - 000000113 _____ () C:\Users\ibay4\AppData\Roaming\D2Info0 2023-03-15 13:57 - 2023-03-15 13:57 - 000000008 _____ () C:\Users\ibay4\AppData\Roaming\DofusAppId0_1 ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================