Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 26-04-2023 Exécuté par user (administrateur) sur LAPTOP-PM77U9DT (ASUSTeK COMPUTER INC. VivoBook_ASUSLaptop X513EAN_K513EA) (26-04-2023 08:12:07) Exécuté depuis C:\Users\user\Desktop\FRST64(2).exe Profils chargés: user Plate-forme: Microsoft Windows 11 Famille Version 22H2 22621.1635 (X64) Langue: Français (Canada) Navigateur par défaut: FF Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_bf969a2fcea35523\ASUSOptimization\AsusOSD.exe (C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHOST.exe (C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\ModuleCore\ProtectedModuleHost.exe (C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\MfeAV\MfeAVSvc.exe (C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe ->) (MUSARUBRA US LLC -> McAfee LLC.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe (C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe ->) (MUSARUBRA US LLC -> McAfee, LLC) C:\Windows\System32\mfevtps.exe (C:\Program Files\McAfee\WebAdvisor\servicehost.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe (C:\Users\user\AppData\Roaming\GhyqW.bat.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe <2> (cmd.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Users\user\AppData\Roaming\GhyqW.bat.exe (cmd.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Users\user\AppData\Roaming\iMhjt.bat.exe (DriverStore\FileRepository\asussci2.inf_amd64_bf969a2fcea35523\ASUSOptimization\AsusOptimization.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_bf969a2fcea35523\ASUSOptimization\AsusOptimizationStartupTask.exe (DriverStore\FileRepository\asussci2.inf_amd64_bf969a2fcea35523\ASUSSoftwareManager\AsusSoftwareManager.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.​) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_bf969a2fcea35523\ASUSSoftwareManager\AsusSoftwareManagerAgent.exe (DriverStore\FileRepository\cui_dch.inf_amd64_617efc0299240684\igfxCUIServiceN.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_617efc0299240684\igfxEMN.exe (McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe <2> (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <29> (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.​) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_bf969a2fcea35523\ASUSLinkRemote\AsusLinkRemote.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_bf969a2fcea35523\AsusAppService\AsusAppService.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_bf969a2fcea35523\ASUSLinkNear\AsusLinkNear.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_bf969a2fcea35523\ASUSOptimization\AsusOptimization.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_bf969a2fcea35523\ASUSSoftwareManager\AsusSoftwareManager.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_bf969a2fcea35523\ASUSSwitch\AsusSwitch.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_bf969a2fcea35523\ASUSSystemAnalysis\AsusSystemAnalysis.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_bf969a2fcea35523\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe (services.exe ->) (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ELANFPService.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_617efc0299240684\igfxCUIServiceN.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_897ea327b3fe52f7\esif_uf.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorvd.inf_amd64_a5ea1b1d8db1527e\RstMwService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_6bfff1da475a22be\OneApp.IGCC.WinService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_e32ced29f236e322\IntelCpHDCPSvc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_cad1db73e8c782a6\WMIRegistrationService.exe (services.exe ->) (Intel Corporation -> Intel) C:\Windows\System32\DriverStore\FileRepository\intcoed.inf_amd64_06dd582276d3f601\AS\IAS\IntelAudioService.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe (services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\CSP\5.5.107.0\McCSPServiceHost.exe (services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe <3> (services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\PEF\CORE\PEFService.exe (services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\VSCore_22_12\mcapexe.exe (services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\MsMpEng.exe (services.exe ->) (MUSARUBRA US LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe (services.exe ->) (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe (sihost.exe ->) (EB51A5DA-0E72-4863-82E4-EA21C1F8DFE3 -> ) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.4779.0_x64__8j3eq9eme6ctt\GCP.ML.BackgroundSysTray\IGCCTray.exe (svchost.exe ->) (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> ) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.209.743.0_x86__zpdnekdrzrea0\SpotifyWidgetProvider.exe (svchost.exe ->) (EB51A5DA-0E72-4863-82E4-EA21C1F8DFE3 -> ) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.4779.0_x64__8j3eq9eme6ctt\IGCC.exe (svchost.exe ->) (Jordan Russell) [Fichier non signé] C:\Users\user\AppData\Local\Temp\aee1d75f06\oneetx.exe (svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.21374.0_x64__8wekyb3d8bbwe\HxOutlook.exe (svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.21374.0_x64__8wekyb3d8bbwe\HxTsr.exe (svchost.exe ->) (Microsoft Windows -> ) C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_423.8900.0.0_x64__cw5n1h2txyewy\Dashboard\WidgetService.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe (svchost.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_be03f2dca68bf962\RtkAudUService64.exe <2> ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKU\S-1-5-19\...\RunOnce: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2631088 2023-04-21] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-20\...\RunOnce: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2631088 2023-04-21] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-812095653-312240268-3792784526-1001\...\Run: [GUDelayStartup] => C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe [44016 2017-09-27] (Glarysoft LTD -> Glarysoft Ltd) HKU\S-1-5-21-812095653-312240268-3792784526-1001\...\Run: [CCXProcess] => C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [648328 2020-03-09] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-21-812095653-312240268-3792784526-1001\...\Run: [com.messenger] => C:\Users\user\AppData\Local\Programs\Messenger\Messenger.exe messenger://openAtLogin (Pas de fichier) HKU\S-1-5-21-812095653-312240268-3792784526-1001\...\Run: [nvopencl64.dll] => rundll32 C:\Users\user\AppData\Local\Temp\1000148061\nvopencl64.dll, rundll (Pas de fichier) <==== ATTENTION HKU\S-1-5-21-812095653-312240268-3792784526-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [40412472 2023-04-17] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) HKU\S-1-5-21-812095653-312240268-3792784526-1001\...\MountPoints2: {b11038ab-3033-11ed-afa7-ec2e98e48c3a} - "D:\LaunchU3.exe" -a HKLM\...\Print\Monitors\Canon BJ FAX Language Monitor MX490 series: C:\WINDOWS\system32\CNCALCK.DLL [303104 2014-09-22] (CANON INC.) [Fichier non signé] HKLM\...\Print\Monitors\Canon BJ Language Monitor MX490 series: C:\WINDOWS\system32\CNMLMCK.DLL [406528 2014-09-10] (CANON INC.) [Fichier non signé] HKLM\...\Print\Monitors\Canon BJNP Port: C:\WINDOWS\system32\CNMN6PPM.DLL [375296 2014-08-06] (CANON INC.) [Fichier non signé] HKLM\Software\Microsoft\Active Setup\Installed Components: [{48F69C39-1356-4A7B-A899-70E3539D4982}] -> C:\Program Files (x86)\AVG\Browser\Application\112.0.20879.122\Installer\chrmstp.exe [2023-04-25] (AVG Technologies USA, LLC -> AVG Technologies) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\112.0.5615.138\Installer\chrmstp.exe [2023-04-21] (Google LLC -> Google LLC) HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] -> Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\O&O Defrag Tray.lnk [2023-04-02] ShortcutTarget: O&O Defrag Tray.lnk -> C:\Windows\Installer\{B15B2393-3049-4C81-AEC7-0A4A6DE59B96}\app_icon.exe () [Fichier non signé] Startup: C:\Users\user\AppData\Local\Temp\aee1d75f06\\oneetx.exe [] (Jordan Russell) [Fichier non signé] BootExecute: autocheck autochk * HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {00C5678B-E190-40D7-8D84-A29AAA41766C} - System32\Tasks\McAfeeLogon => C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe [768288 2022-03-24] (McAfee, LLC -> McAfee, LLC) Task: {05BC03C5-E6E3-4261-906C-F3D5B2133381} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26409896 2023-04-06] (Microsoft Corporation -> Microsoft Corporation) Task: {0AF94F87-5E7B-4EA1-BFF2-33052BC4E468} - System32\Tasks\Microsoft\Office\Office Serviceability Manager => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\officesvcmgr.exe [3817160 2023-03-30] (Microsoft Corporation -> Microsoft Corporation) Task: {0BC198F1-805F-4399-AE10-07FDC36C08C0} - System32\Tasks\G100 => powershell -WindowStyle Hidden -Command "Start-Process -WindowStyle hidden -FilePath \"C:\Users\user\AppData\Local\Temp\g100.bat\" -ArgumentList \"111\"" <==== ATTENTION Task: {17D8F921-74BE-4612-855A-27849985EEB2} - System32\Tasks\RuntimeBroker_iMhjt => C:\Users\user\AppData\Roaming\iMhjt.vbs [127 2023-04-25] () [Fichier non signé] <==== ATTENTION Task: {182DBF77-A76B-406B-816E-31B09049F1AB} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\MpCmdRun.exe [1645864 2023-04-11] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {2C6FC606-0F0C-4F3F-BDB3-2CE86AB53357} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} Task: {2F885A28-532B-44B3-9ED7-7AAC05A35A3E} - System32\Tasks\oneetx.exe => C:\Users\user\AppData\Local\Temp\aee1d75f06\oneetx.exe [1141910516 2023-04-25] (Jordan Russell) [Fichier non signé] <==== ATTENTION Task: {3121ED45-DCC3-49C3-9C3F-16A78D91BCA9} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2021-11-16] (Google LLC -> Google LLC) Task: {363C3A8B-7AF6-4285-97C7-9D05BF593FE7} - System32\Tasks\GU5SkipUAC => C:\Program Files (x86)\Glary Utilities 5\Integrator.exe [897520 2017-09-27] (Glarysoft LTD -> Glarysoft Ltd) Task: {368911CC-AE3C-4E58-AA21-6C2D645D9ACC} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144272 2023-04-15] (Microsoft Corporation -> Microsoft Corporation) Task: {47C85515-097D-4520-8901-0030DFDBBE80} - System32\Tasks\McUtilTask => C:\Program Files\Common Files\McAfee\UPDMGR\7.9.156.1\mcupdutl.exe /setaffid default 1440 (Pas de fichier) Task: {4B6F99B0-5FEE-4310-8060-F1CA3DF8B185} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26409896 2023-04-06] (Microsoft Corporation -> Microsoft Corporation) Task: {4C8F5617-1284-4957-B953-910C8A165E95} - System32\Tasks\AVG Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe [3357072 2023-04-17] (AVG Technologies USA, LLC -> AVG Technologies) Task: {50234332-BF8F-4FFC-8651-B34133DA16CE} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2021-11-16] (Google LLC -> Google LLC) Task: {57B392EA-A504-471E-BBFE-F07B8B1634BE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\MpCmdRun.exe [1645864 2023-04-11] (Microsoft Windows Publisher -> Microsoft Corporation) "C:\Windows\System32\Tasks\McAfee\McAfee Idle Detection Task" a été déverrouillé. <==== ATTENTION Task: {5E7B7952-AE9F-4B7D-87FE-B5833FC67FA3} - System32\Tasks\McAfee\McAfee Idle Detection Task => {ABCDCA3B-DE6B-5A7C-B132-6D7CBA63E5C5} C:\Program Files\Common Files\McAfee\TaskScheduler\McAMTaskAgent.exe [931056 2023-02-20] (McAfee, LLC -> McAfee, LLC) Task: {5F089C01-DFE2-4B99-B64D-992C10173944} - System32\Tasks\ASUS Optimization 36D18D69AFC3 => C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_bf969a2fcea35523\ASUSOptimization\AsusHotkey.exe [276104 2023-01-29] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) Task: {6497425C-49A5-441A-AC10-BD95B83127DE} - System32\Tasks\AVGUpdateTaskMachineUA => C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [209224 2022-12-13] (AVG Technologies USA, LLC -> AVG Technologies) Task: {6B978512-7AD3-443D-968F-F19AC0AE5D80} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\MpCmdRun.exe [1645864 2023-04-11] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {91A62A59-93B3-4D0F-8691-CDD496FF90E2} - System32\Tasks\CCleanerSkipUAC - user => C:\Program Files\CCleaner\CCleaner.exe [34159416 2023-04-17] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) Task: {967069A2-1288-44DA-92CE-8DF40CB7F71A} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4703544 2023-04-17] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "f85eb6f2-b0a3-4359-9464-7979361aafa2" --version "6.11.10435" --silent Task: {9B41DFEE-DB47-4262-A99B-794F0E98EB44} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564152 2023-04-03] (Adobe Inc. -> Adobe Inc.) Task: {A99F1B97-CE3E-4A13-870F-B510052D284F} - System32\Tasks\AVGUpdateTaskMachineCore => C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [209224 2022-12-13] (AVG Technologies USA, LLC -> AVG Technologies) Task: {AAEEC464-966B-49D4-BF69-E0359017051A} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [168880 2023-04-15] (Microsoft Corporation -> Microsoft Corporation) Task: {B187E5A3-39FF-44B6-A2A0-39DBB7E155B7} - System32\Tasks\RtkAudUService64_BG => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_be03f2dca68bf962\RtkAudUService64.exe [3498472 2022-05-26] (Realtek Semiconductor Corp. -> Realtek Semiconductor) Task: {B350F10E-7AF2-423B-9968-49C418630AFA} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4196784 2023-04-21] (Microsoft Corporation -> Microsoft Corporation) Task: {B5C59B8B-2C14-4EB8-ACE7-5B6F9FFDEFC5} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [714256 2023-04-17] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) Task: {B80E5A71-2CC3-4992-A5E3-07228220E32A} - System32\Tasks\McAfee Remediation (Prepare) => C:\Program Files\Common Files\AV\McAfee VirusScan\upgrade.exe [4564016 2023-01-16] (McAfee, LLC -> McAfee, LLC) Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => C:\WINDOWS\System32\MbaeParserTask.exe (Pas de fichier) Task: {CD393F94-FCE6-4735-8E4B-8F9A127DEE93} - System32\Tasks\McAfee\DAD.Execute.Updates => C:\Program Files\Common Files\McAfee\DynamicAppDownloader\DADUpdater.exe [4094568 2023-02-17] (McAfee, LLC -> McAfee, LLC) Task: {D401F0D6-1A29-415B-84B1-10D69EFE251A} - System32\Tasks\Meta\Messenger-SL-Helper-S-1-5-21-812095653-312240268-3792784526-1001 => C:\Users\user\AppData\Local\Programs\Messenger\MessengerHelper.exe [2158840 2023-01-30] (Facebook, Inc. -> Meta Platforms, Inc.) Task: {D75F55D3-1308-434A-8792-088448D24EA8} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-812095653-312240268-3792784526-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4196784 2023-04-21] (Microsoft Corporation -> Microsoft Corporation) Task: {D771CB41-6546-42C4-A0F1-9D091F7656A2} - System32\Tasks\McAfee\McAfee Auto Maintenance Task Agent => {ABCECA3B-EA5A-496B-A021-5C6BAB365E5C} C:\Program Files\Common Files\McAfee\TaskScheduler\McAMTaskAgent.exe [931056 2023-02-20] (McAfee, LLC -> McAfee, LLC) Task: {DA9A0619-581C-4C84-91CB-E7EE7BE1902D} - System32\Tasks\ASUS Update Checker 2.0 => C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_bf969a2fcea35523\ASUSSoftwareManager\AsusUpdateChecker.exe [797784 2023-01-29] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => C:\WINDOWS\system32\MusNotification.exe (Pas de fichier) Task: {E64B829F-5FF9-43DF-A2D7-1CF282B27E6E} - System32\Tasks\7e65a1e41abc34c65c5b978a59e10ebb => C:\Users\user\.59e10ebb\5c5b978a.exe (Pas de fichier) Task: {EB91A0CE-8259-4764-847F-738F2885148E} - System32\Tasks\AsusSystemAnalysis_754F3273-0563-4F20-B12F-826510B07474 => C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_bf969a2fcea35523\ASUSSystemAnalysis\AsusSystemAnalysis.exe [3606120 2023-01-29] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) Task: {EBD2318C-5202-48C4-859F-E2AAC9801329} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\MpCmdRun.exe [1645864 2023-04-11] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {EC23C14C-53C2-4F43-BB7E-B2FE412CEB19} - System32\Tasks\RuntimeBroker_GhyqW => C:\Users\user\AppData\Roaming\GhyqW.vbs [127 2023-04-25] () [Fichier non signé] <==== ATTENTION Task: {EDD638F2-E688-47FF-8ED0-681C1888CF2E} - System32\Tasks\AVG Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe [3357072 2023-04-17] (AVG Technologies USA, LLC -> AVG Technologies) Task: {EFB25327-D433-4092-B297-EF3C36757B23} - System32\Tasks\GlaryInitialize 5 => C:\Program Files (x86)\Glary Utilities 5\Initialize.exe [134640 2017-09-27] (Glarysoft LTD -> Glarysoft Ltd) Task: {EFFF5F64-5137-4782-96CC-CF87E3DEEA26} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [718240 2023-04-25] (Mozilla Corporation -> Mozilla Foundation) Task: {F6B6987A-BBFC-4916-BF31-023343A3B8CC} - System32\Tasks\CCleanerClean => C:\Program Files\CCleaner\CCleaner.exe [34159416 2023-04-17] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) Task: {FFD93B7D-07B3-494A-8BB8-BFF0874FC902} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144272 2023-04-15] (Microsoft Corporation -> Microsoft Corporation) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\CCleanerClean.job => C:\Program Files\CCleaner\CCleaner.exe Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704 2011-08-31] (Apple Inc. -> Apple Inc.) Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [132968 2011-08-31] (Apple Inc. -> Apple Inc.) Hosts: 127.0.0.1 live.virtualdj.com Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 24.201.245.77 24.200.243.189 Tcpip\..\Interfaces\{2a6a14d2-0530-4597-ae73-3d5e6c6080f7}: [DhcpNameServer] 192.168.8.1 192.168.8.1 Tcpip\..\Interfaces\{87632f49-b27c-4ae5-8f36-f2e3d66bfc0b}: [DhcpNameServer] 192.168.0.1 24.201.245.77 24.200.243.189 Tcpip\..\Interfaces\{a94affee-83a0-4996-986e-fd4de52bae65}: [DhcpNameServer] 10.66.80.1 FireFox: ======== FF DefaultProfile: qgfc28vr.default FF ProfilePath: C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\qgfc28vr.default [2021-12-06] FF ProfilePath: C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\hfl8mq39.default-release-1682480651928 [2023-04-26] FF Homepage: Mozilla\Firefox\Profiles\hfl8mq39.default-release-1682480651928 -> www.google.ca FF Extension: (Dictionnaire français) - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\hfl8mq39.default-release-1682480651928\Extensions\fr-dicollecte@dictionaries.addons.mozilla.org.xpi [2023-04-25] FF Extension: (Language: Français (French)) - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\hfl8mq39.default-release-1682480651928\Extensions\langpack-fr@firefox.mozilla.org.xpi [2023-04-25] FF Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\hfl8mq39.default-release-1682480651928\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2023-04-25] FF Plugin: @mcafee.com/MSC,version=10 -> C:\Program Files\McAfee\MSC\npMcSnFFPl64.dll [2023-03-01] (McAfee, LLC -> ) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-11-02] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.14 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.16 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2023-04-04] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @mcafee.com/MSC,version=10 -> C:\Program Files (x86)\McAfee\MSC\npMcSnFFPl.dll [2023-03-01] (McAfee, LLC -> ) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2022-11-02] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-11-02] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @update.avgbrowser.com/AVG Browser;version=3 -> C:\Program Files (x86)\AVG\Browser\Update\1.8.1582.3\npAvgBrowserUpdate3.dll [2022-12-13] (AVG Technologies USA, LLC -> AVG Technologies) FF Plugin-x32: @update.avgbrowser.com/AVG Browser;version=9 -> C:\Program Files (x86)\AVG\Browser\Update\1.8.1582.3\npAvgBrowserUpdate3.dll [2022-12-13] (AVG Technologies USA, LLC -> AVG Technologies) Chrome: ======= CHR Profile: C:\Users\user\AppData\Local\Google\Chrome\User Data\Default [2023-04-26] CHR Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2023-03-09] CHR Extension: (McAfee® WebAdvisor) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2023-03-19] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-11-16] CHR Extension: (AdBlocker Ultimate) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohahllgiabjaoigichmmfljhkcfikeof [2023-02-06] CHR Profile: C:\Users\user\AppData\Local\Google\Chrome\User Data\Profile 1 [2023-04-25] CHR Extension: (Slides) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-11-18] CHR Extension: (Docs) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2021-11-18] CHR Extension: (Google Drive) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-11-18] CHR Extension: (YouTube) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-11-18] CHR Extension: (Adobe Acrobat) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2021-11-18] CHR Extension: (Sheets) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-11-18] CHR Extension: (McAfee® WebAdvisor) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2021-11-18] CHR Extension: (Google Docs hors connexion) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-11-18] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-11-18] CHR Extension: (Gmail) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-11-18] CHR Profile: C:\Users\user\AppData\Local\Google\Chrome\User Data\System Profile [2023-04-25] CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] CHR HKLM-x32\...\Chrome\Extension: [aegnopegbbhjeeiganiajffnalhlkkjb] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] Brave: ======= BRA Profile: C:\Users\user\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2023-04-25] BRA Extension: (Safe Torrent Scanner) - C:\Users\user\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\aegnopegbbhjeeiganiajffnalhlkkjb [2022-12-14] BRA Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\user\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2022-12-14] BRA Extension: (Brave Local Data Files Updater) - C:\Users\user\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2022-12-14] BRA Extension: (Brave NTP background images) - C:\Users\user\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2022-12-14] BRA Extension: (Wallet Data Files Updater) - C:\Users\user\AppData\Local\BraveSoftware\Brave-Browser\User Data\BraveWallet [2022-12-14] BRA Extension: (Brave Ad Block Updater (AdGuard Français (plaintext))) - C:\Users\user\AppData\Local\BraveSoftware\Brave-Browser\User Data\flnkmpokemfpaajmiimmjeiandgoodgg [2022-12-14] BRA Extension: (Brave Ad Block Updater (Regional Catalog)) - C:\Users\user\AppData\Local\BraveSoftware\Brave-Browser\User Data\gkboaolpopklhgplhaaiboijnklogmbc [2022-12-14] BRA Extension: (Brave NTP Super Referrer mapping table) - C:\Users\user\AppData\Local\BraveSoftware\Brave-Browser\User Data\heplpbhjcbmiibdlchlanmdenffpiibo [2022-12-14] BRA Extension: (Brave Ad Block Updater (Default (plaintext))) - C:\Users\user\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodkpdagapdfkphljnddpjlldadblomo [2022-12-14] BRA Extension: (Brave NTP sponsored images) - C:\Users\user\AppData\Local\BraveSoftware\Brave-Browser\User Data\jiacfhmaoegmmahbioiihgpfnjnklmoe [2022-12-14] BRA Extension: (Brave Ad Block Updater (Resources)) - C:\Users\user\AppData\Local\BraveSoftware\Brave-Browser\User Data\mfddibmblmbccpadfndgakiopmmhebop [2022-12-14] BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\user\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2022-12-14] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-04-03] (Adobe Inc. -> Adobe Inc.) R2 AsusAppService; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_bf969a2fcea35523\AsusAppService\AsusAppService.exe [1159304 2023-01-29] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 ASUSLinkNear; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_bf969a2fcea35523\ASUSLinkNear\AsusLinkNear.exe [1327240 2023-01-29] (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) R2 ASUSLinkRemote; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_bf969a2fcea35523\ASUSLinkRemote\AsusLinkRemote.exe [764552 2023-01-29] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.​) R2 ASUSOptimization; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_bf969a2fcea35523\ASUSOptimization\AsusOptimization.exe [406152 2023-01-29] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 ASUSSoftwareManager; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_bf969a2fcea35523\ASUSSoftwareManager\AsusSoftwareManager.exe [1091688 2023-01-29] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 ASUSSwitch; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_bf969a2fcea35523\ASUSSwitch\AsusSwitch.exe [635480 2023-01-29] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 ASUSSystemAnalysis; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_bf969a2fcea35523\ASUSSystemAnalysis\AsusSystemAnalysis.exe [3606120 2023-01-29] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 ASUSSystemDiagnosis; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_bf969a2fcea35523\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe [829016 2023-01-29] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) S3 avg; C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [209224 2022-12-13] (AVG Technologies USA, LLC -> AVG Technologies) S3 avgm; C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [209224 2022-12-13] (AVG Technologies USA, LLC -> AVG Technologies) S3 AVGSecureBrowserElevationService; C:\Program Files (x86)\AVG\Browser\Application\112.0.20879.122\elevation_service.exe [1808520 2023-04-17] (AVG Technologies USA, LLC -> AVG Technologies) R2 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1063736 2023-04-17] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) S4 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12634544 2023-04-06] (Microsoft Corporation -> Microsoft Corporation) S3 DtsApo4Service; C:\WINDOWS\System32\DTS\PC\APO4x\DtsApo4Service.exe [241760 2022-04-29] (DTS, Inc. -> DTS Inc.) S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\23.071.0402.0001\FileSyncHelper.exe [3472288 2023-04-21] (Microsoft Corporation -> Microsoft Corporation) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [229328 2023-04-11] (HP Inc. -> HP Inc.) R2 IntelAudioService; C:\WINDOWS\System32\DriverStore\FileRepository\intcoed.inf_amd64_06dd582276d3f601\\AS\\IAS\\IntelAudioService.exe [532024 ] (Intel Corporation -> Intel) R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [856472 2023-04-05] (McAfee, LLC -> McAfee, LLC) R2 McAPExe; C:\Program Files\Common Files\McAfee\VSCore_22_12\McApExe.exe [815376 2023-04-05] (McAfee, LLC -> McAfee, LLC) S3 McAWFwk; C:\Program Files\Common Files\McAfee\ActWiz\McAWFwk.exe [583344 2020-11-03] (McAfee, LLC -> McAfee, LLC) R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\5.5.107.0\\McCSPServiceHost.exe [3384472 ] (McAfee, LLC -> McAfee, LLC) S3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe [1226192 2023-04-05] (MUSARUBRA US LLC -> McAfee, LLC) R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe [1226192 2023-04-05] (MUSARUBRA US LLC -> McAfee, LLC) R3 mfevtp; C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe [1226192 2023-04-05] (MUSARUBRA US LLC -> McAfee, LLC) R2 ModuleCoreService; C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe [1570496 2023-02-17] (McAfee, LLC -> McAfee, LLC) S3 OfficeSvcManagerAddons; C:\WINDOWS\system32\dllhost.exe /Processid:{2CA2E202-932F-4BA2-8771-195BB86398F5} [46416 2022-05-07] (Microsoft Windows -> Microsoft Corporation) S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\23.071.0402.0001\OneDriveUpdaterService.exe [3807664 2023-04-21] (Microsoft Corporation -> Microsoft Corporation) S4 OODefragAgent; C:\Program Files\OO Software\Defrag\oodag.exe [4357040 2022-09-08] (O&O Software GmbH -> O&O Software GmbH) R2 PEFService; C:\Program Files\Common Files\McAfee\PEF\CORE\PEFService.exe [4248712 2022-10-14] (McAfee, LLC -> McAfee, LLC) S3 ss_conn_service; C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [752224 2021-06-22] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) S3 ss_conn_service2; C:\Program Files\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe [920768 2021-06-23] (Samsung Electronics Co., Ltd. -> DEVGURU Co., LTD.) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\NisSrv.exe [3228400 2023-04-11] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\MsMpEng.exe [133536 2023-04-11] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 AcxHdAudio; C:\WINDOWS\System32\drivers\AcxHdAudio.sys [565248 2023-03-15] (Microsoft Windows -> Microsoft Corporation) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) R3 AsusPTPDrv; C:\WINDOWS\System32\DriverStore\FileRepository\asusptpfilter.inf_amd64_314b5cb6bf57f471\AsusPTPFilter.sys [116712 2021-12-02] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) R3 AsusSAIO; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_bf969a2fcea35523\ASUSSystemAnalysis\AsusSAIO.sys [46688 2023-01-29] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R1 ATKWMIACPIIO; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_bf969a2fcea35523\ASUSOptimization\AsusWmiAcpi.sys [45280 2023-01-29] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [106496 2022-05-07] (Microsoft Corporation) [Fichier non signé] R3 cfwids; C:\WINDOWS\System32\drivers\cfwids.sys [70880 2023-04-05] (Microsoft Windows Hardware Compatibility Publisher -> Trellix US LLC.) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) R1 GUBootStartup; C:\WINDOWS\System32\drivers\GUBootStartup.sys [20160 2021-11-19] (Glarysoft Ltd -> Glarysoft Ltd) R3 iaLPSS2_GPIO2_TGL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_gpio2_tgl.inf_amd64_2546dafe2183e972\iaLPSS2_GPIO2_TGL.sys [131224 2021-07-20] (Intel Corporation -> Intel Corporation) R3 iaLPSS2_I2C_TGL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_i2c_tgl.inf_amd64_1308f85f1b0adf27\iaLPSS2_I2C_TGL.sys [204440 2021-07-20] (Intel Corporation -> Intel Corporation) R3 iaLPSS2_SPI_TGL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_spi_tgl.inf_amd64_fc1ed3a5a1d514f2\iaLPSS2_SPI_TGL.sys [158352 2021-07-20] (Intel Corporation -> Intel Corporation) R3 iaLPSS2_UART2_TGL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_uart2_tgl.inf_amd64_cd8c3a141c1b1284\iaLPSS2_UART2_TGL.sys [313504 2021-07-20] (Intel Corporation -> Intel Corporation) R0 iaStorVD; C:\WINDOWS\System32\drivers\iaStorVD.sys [1544912 2021-08-26] (Intel Corporation -> Intel Corporation) R3 IntcUSB; C:\WINDOWS\System32\DriverStore\FileRepository\intcusb.inf_amd64_d97909364d9908a5\IntcUSB.sys [892968 2022-06-02] (Intel Corporation -> Intel(R) Corporation) R3 IntelGNA; C:\WINDOWS\System32\DriverStore\FileRepository\gna.inf_amd64_19ceb7ce67a7cf8b\gna.sys [87200 2022-01-11] (Intel Corporation -> Intel Corporation) R3 mfeaack; C:\WINDOWS\System32\drivers\mfeaack.sys [491232 2022-11-22] (Microsoft Windows Hardware Compatibility Publisher -> Trellix US LLC.) R3 mfeavfk; C:\WINDOWS\System32\drivers\mfeavfk.sys [354016 2022-11-22] (Microsoft Windows Hardware Compatibility Publisher -> Trellix US LLC.) S0 mfeelamk; C:\WINDOWS\System32\drivers\mfeelamk.sys [85456 2023-04-05] (Microsoft Windows Early Launch Anti-malware Publisher -> Trellix US LLC.) R3 mfefirek; C:\WINDOWS\System32\drivers\mfefirek.sys [464080 2023-04-05] (Microsoft Windows Hardware Compatibility Publisher -> Trellix US LLC.) R0 mfehidk; C:\WINDOWS\System32\drivers\mfehidk.sys [949472 2023-04-05] (Microsoft Windows Hardware Compatibility Publisher -> Trellix US LLC.) R3 mfencbdc; C:\WINDOWS\System32\DRIVERS\mfencbdc.sys [714600 2022-11-15] (Musarubra US LLC -> Trellix US LLC.) S3 mfencrk; C:\WINDOWS\System32\DRIVERS\mfencrk.sys [135024 2022-11-15] (Musarubra US LLC -> Trellix US LLC.) R3 mfeplk; C:\WINDOWS\System32\drivers\mfeplk.sys [106720 2022-11-22] (Microsoft Windows Hardware Compatibility Publisher -> Trellix US LLC.) R0 mfewfpk; C:\WINDOWS\System32\drivers\mfewfpk.sys [233176 2023-04-05] (Microsoft Windows Hardware Compatibility Publisher -> Trellix US LLC.) R3 MTKBTFilterX64; C:\WINDOWS\system32\DRIVERS\mtkbtfilterx.sys [276960 2022-03-25] (Microsoft Windows Hardware Compatibility Publisher -> MediaTek Inc.) R3 mtkwlex; C:\WINDOWS\System32\drivers\mtkwl6ex.sys [1393656 2022-03-24] (Microsoft Windows Hardware Compatibility Publisher -> MediaTek Inc.) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 ss_conn_usb_driver2; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver2.sys [50720 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [27136 2023-03-07] (OpenVPN Technologies, Inc. -> The OpenVPN Project) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49600 2023-04-11] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [497920 2023-04-11] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [99608 2023-04-11] (Microsoft Windows -> Microsoft Corporation) S1 WinSetupMon; system32\DRIVERS\WinSetupMon.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2023-04-26 08:12 - 2023-04-26 08:12 - 000043669 _____ C:\Users\user\Desktop\FRST.txt 2023-04-26 08:11 - 2023-04-26 08:12 - 000000000 ____D C:\FRST 2023-04-26 08:10 - 2023-04-26 08:10 - 002382336 _____ (Farbar) C:\Users\user\Desktop\FRST64(2).exe 2023-04-26 08:07 - 2023-04-26 08:07 - 002382336 _____ (Farbar) C:\Users\user\Downloads\FRST64.exe 2023-04-26 08:07 - 2023-04-26 08:07 - 002382336 _____ (Farbar) C:\Users\user\Downloads\FRST64(1).exe 2023-04-26 07:55 - 2023-04-26 07:55 - 000357364 _____ C:\Users\user\Desktop\ZHPDiag.txt 2023-04-26 07:48 - 2023-04-26 07:48 - 003516104 _____ (Nicolas Coolman) C:\Users\user\Downloads\ZHPSuite(1).exe 2023-04-26 07:44 - 2023-04-26 07:49 - 000000866 _____ C:\Users\user\Desktop\ZHPSuite.lnk 2023-04-26 07:44 - 2023-04-26 07:44 - 003516104 _____ (Nicolas Coolman) C:\Users\user\Downloads\ZHPSuite.exe 2023-04-26 07:39 - 2023-04-26 07:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee 2023-04-25 23:42 - 2023-04-25 23:44 - 000000000 ____D C:\Users\user\Desktop\Old Firefox Data 2023-04-25 23:23 - 2023-04-25 23:23 - 000002974 _____ C:\WINDOWS\system32\Tasks\CCleanerClean 2023-04-25 23:23 - 2023-04-25 23:23 - 000000280 _____ C:\WINDOWS\Tasks\CCleanerClean.job 2023-04-25 22:21 - 2023-04-25 22:21 - 000000017 _____ C:\Users\user\AppData\Local\resmon.resmoncfg 2023-04-25 22:11 - 2023-04-25 22:11 - 000809242 _____ C:\WINDOWS\system32\perfh00C.dat 2023-04-25 22:11 - 2023-04-25 22:11 - 000156990 _____ C:\WINDOWS\system32\perfc00C.dat 2023-04-25 22:09 - 2023-04-25 22:09 - 008791352 _____ (Malwarebytes) C:\Users\user\Downloads\AdwCleaner.exe 2023-04-25 21:40 - 2023-04-26 07:55 - 000000000 ____D C:\Users\user\AppData\Roaming\ZHP 2023-04-25 21:40 - 2023-04-26 07:44 - 000000000 ____D C:\Users\user\AppData\Local\ZHP 2023-04-25 21:39 - 2023-04-25 21:40 - 003316936 _____ (Nicolas Coolman) C:\Users\user\Downloads\ZHPDiag3.exe 2023-04-25 21:22 - 2023-04-25 21:22 - 000000000 ____D C:\Users\user\AppData\Local\mbam 2023-04-25 21:20 - 2023-04-25 21:20 - 000000000 ___HD C:\$WinREAgent 2023-04-25 21:03 - 2023-04-25 21:34 - 000000760 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job 2023-04-25 21:03 - 2023-04-25 21:03 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2023-04-25 21:03 - 2023-04-25 21:03 - 000003472 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting 2023-04-25 21:03 - 2023-04-25 21:03 - 000000865 _____ C:\Users\Public\Desktop\CCleaner.lnk 2023-04-25 21:03 - 2023-04-25 21:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2023-04-25 21:02 - 2023-04-25 21:02 - 056180960 _____ (Piriform Software Ltd) C:\Users\user\Downloads\ccsetup611.exe 2023-04-25 19:27 - 2023-04-25 19:27 - 000000000 ____D C:\Users\user\AppData\Local\Shelblock 2023-04-25 19:26 - 2023-04-25 19:26 - 010642856 _____ (Apollo Team) C:\Users\user\Downloads\shelblock_2-2_fr_435832.exe 2023-04-25 19:26 - 2023-04-25 19:26 - 000000000 ____D C:\ProgramData\AppoloTeam 2023-04-25 14:36 - 2023-04-25 14:36 - 000051139 _____ C:\Users\user\Downloads\Relevés fiscaux (2023-01-17)-2.pdf 2023-04-25 08:51 - 2023-04-25 09:51 - 000000000 ____D C:\Users\user\.59e10ebb 2023-04-25 08:51 - 2023-04-25 08:51 - 000004156 _____ C:\WINDOWS\system32\Tasks\7e65a1e41abc34c65c5b978a59e10ebb 2023-04-25 08:35 - 2023-04-25 08:35 - 000636712 _____ C:\Users\user\AppData\Roaming\iMhjt.bat 2023-04-25 08:35 - 2023-04-25 08:35 - 000197487 _____ C:\Users\user\AppData\Roaming\GhyqW.bat 2023-04-25 08:35 - 2023-04-25 08:35 - 000003334 _____ C:\WINDOWS\system32\Tasks\RuntimeBroker_iMhjt 2023-04-25 08:35 - 2023-04-25 08:35 - 000003334 _____ C:\WINDOWS\system32\Tasks\RuntimeBroker_GhyqW 2023-04-25 08:35 - 2023-04-25 08:35 - 000000127 _____ C:\Users\user\AppData\Roaming\iMhjt.vbs 2023-04-25 08:35 - 2023-04-25 08:35 - 000000127 _____ C:\Users\user\AppData\Roaming\GhyqW.vbs 2023-04-25 08:34 - 2023-04-25 08:34 - 000003588 _____ C:\WINDOWS\system32\Tasks\oneetx.exe 2023-04-25 08:31 - 2023-04-25 23:02 - 000002322 _____ C:\Users\user\Desktop\Messenger.lnk 2023-04-25 08:31 - 2023-04-25 08:31 - 000004360 _____ C:\WINDOWS\system32\Tasks\G100 2023-04-25 08:31 - 2023-04-25 08:31 - 000000000 ____D C:\ProgramData\Piriform 2023-04-25 08:30 - 2023-04-25 23:22 - 000000000 ____D C:\Program Files\CCleaner 2023-04-25 08:30 - 2023-04-25 21:03 - 000002900 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - user 2023-04-25 08:30 - 2023-04-25 20:02 - 000000000 ____D C:\Program Files (x86)\Microsoft Visual C++ Redistributable latest 2023-04-25 08:29 - 2023-04-25 08:29 - 050469616 _____ C:\Users\user\Downloads\CCleanerPro_pass1234.zip 2023-04-25 08:29 - 2023-04-25 08:29 - 004709806 _____ C:\Users\user\Downloads\I.rar 2023-04-25 08:28 - 2023-04-25 08:28 - 005807757 _____ C:\Users\user\Downloads\Setup_x64.zip 2023-04-25 08:28 - 2023-04-25 08:28 - 000000000 ____D C:\Users\user\Downloads\Setup_x64 2023-04-25 08:26 - 2023-04-25 20:24 - 000000000 ____D C:\Users\user\Desktop\I 2023-04-25 08:23 - 2023-04-25 08:23 - 000000000 ____D C:\Users\user\AppData\Local\Yandex 2023-04-24 16:08 - 2023-04-24 16:08 - 021270304 _____ C:\Users\user\Downloads\realistic-old-paper-texture-background.zip 2023-04-24 14:29 - 2023-04-24 14:29 - 000400411 _____ C:\Users\user\Downloads\rectangle-white-frame-background-template-vector.zip 2023-04-24 14:20 - 2023-04-24 14:20 - 002923968 _____ C:\Users\user\Downloads\fond-tissu-ondulation.zip 2023-04-24 14:01 - 2023-04-24 14:01 - 002300869 _____ C:\Users\user\Downloads\rideau-blanc-fond.zip 2023-04-24 11:02 - 2023-04-20 06:53 - 028887786 _____ C:\Users\user\Desktop\IMG_4406.CR2 2023-04-22 00:51 - 2023-04-22 00:51 - 000000000 ___HD C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup-Disabled 2023-04-20 01:30 - 2023-04-20 01:37 - 000000000 ____D C:\Users\user\AppData\Roaming\calibrite PROFILER 2023-04-20 01:30 - 2023-04-20 01:30 - 000000000 ____D C:\Users\user\AppData\Local\Calibrite 2023-04-20 01:29 - 2023-04-20 01:29 - 000002464 _____ C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\calibrite PROFILER.lnk 2023-04-20 01:29 - 2023-04-20 01:29 - 000002456 _____ C:\Users\user\Desktop\calibrite PROFILER.lnk 2023-04-20 01:29 - 2023-04-20 01:29 - 000000000 ____D C:\Users\user\AppData\Local\calibrite-profiler-updater 2023-04-20 01:26 - 2023-04-20 01:26 - 000001268 _____ C:\Users\user\Desktop\SpyderCheckr 1.6.lnk 2023-04-20 01:26 - 2023-04-20 01:26 - 000000000 ____D C:\Users\user\AppData\Local\Datacolor 2023-04-20 01:26 - 2023-04-20 01:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Datacolor 2023-04-20 01:26 - 2023-04-20 01:26 - 000000000 ____D C:\Program Files (x86)\Datacolor 2023-04-20 01:26 - 2008-01-30 17:36 - 000090112 _____ (MindVision Software) C:\WINDOWS\unvise32.exe 2023-04-19 13:43 - 2023-04-19 13:43 - 000005235 _____ C:\Users\user\Downloads\20230416_5134_LAZARE_STÉPHANE.pdf 2023-04-13 16:45 - 2023-04-13 16:45 - 000759651 _____ C:\Users\user\Documents\document assurance.pdf 2023-04-12 20:10 - 2023-04-12 20:10 - 000215205 _____ C:\Users\user\Downloads\Renouvellement LOCATAIRE 19332642.pdf 2023-04-12 15:13 - 2023-04-12 15:13 - 000005231 _____ C:\Users\user\Downloads\20230409_5134_LAZARE_STÉPHANE.pdf 2023-04-11 15:21 - 2023-04-11 15:21 - 000221494 _____ C:\Users\user\Downloads\Stéphane Lazare.pdf 2023-04-10 22:06 - 2023-04-10 22:06 - 001319136 _____ (CPUID, Inc. ) C:\Users\user\Downloads\hwmonitor_1.43.exe 2023-04-10 22:06 - 2023-04-10 22:06 - 000000977 _____ C:\Users\Public\Desktop\CPUID HWMonitor.lnk 2023-04-10 22:06 - 2023-04-10 22:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID 2023-04-10 22:06 - 2023-04-10 22:06 - 000000000 ____D C:\Program Files\CPUID 2023-04-08 11:08 - 2023-04-08 11:08 - 003656605 _____ C:\Users\user\Downloads\Faites-vous-plaisir-en-photographiant_2022_Apprendre.Photo-Laurent_Breillat.pdf 2023-04-06 19:26 - 2023-04-06 19:26 - 000008961 _____ C:\Users\user\Downloads\IMG_4297.xmp 2023-04-06 19:24 - 2023-04-06 19:24 - 000008951 _____ C:\Users\user\Downloads\IMG_4283.xmp 2023-04-06 19:23 - 2023-04-06 12:25 - 030384404 _____ C:\Users\user\Downloads\IMG_4297.CR2 2023-04-06 17:14 - 2023-04-06 17:14 - 000005243 _____ C:\Users\user\Downloads\20230402_5134_LAZARE_STÉPHANE.pdf 2023-04-06 17:02 - 2023-04-06 17:02 - 000001132 _____ C:\Users\user\Desktop\Adobe Premiere Pro 2020.lnk 2023-04-06 17:02 - 2023-04-06 17:02 - 000001132 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Premiere Pro 2020.lnk 2023-04-06 17:02 - 2023-04-06 17:02 - 000000000 ____D C:\Users\Public\Documents\Adobe 2023-04-06 16:56 - 2023-04-06 16:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\resources 2023-04-06 16:56 - 2023-04-06 16:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\products 2023-04-06 16:56 - 2023-04-06 16:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\packages 2023-04-06 16:51 - 2023-04-06 16:51 - 000000000 ____D C:\Users\user\Desktop\Adobe Premier Pro 2020 by Torpeden 2023-04-06 16:48 - 2023-04-06 16:50 - 1657262061 _____ C:\Users\user\Desktop\Adobe Premier Pro 2020 by Torpeden.zip 2023-04-06 16:40 - 2023-04-06 16:40 - 000000000 ___RD C:\Users\user\Dropbox 2023-04-06 16:32 - 2023-04-06 16:42 - 000000000 ____D C:\Users\user\AppData\Roaming\DropboxElectron 2023-04-06 10:09 - 2023-04-06 10:09 - 000000000 ___RD C:\Users\user\Downloads\B9ECED6F.ASUSPCAssistant_qmba6cd70vzyy!App 2023-04-06 09:44 - 2023-04-06 09:44 - 1150044199 _____ C:\Users\user\Downloads\CRACK Premiere Pro 2022.zip 2023-04-06 09:44 - 2023-04-06 09:44 - 000000000 ____D C:\Users\user\Downloads\CRACK Premiere Pro 2022 2023-04-04 11:27 - 2023-04-06 08:35 - 000000000 ____D C:\Users\user\Desktop\TIME LAPSE 2023-04-03 11:25 - 2023-04-03 11:25 - 000637143 _____ C:\Users\user\Documents\2023-04-03_112513.pdf 2023-04-02 18:40 - 2023-04-02 18:40 - 007466056 _____ (Piriform Software Ltd) C:\Users\user\Downloads\dfsetup222.exe 2023-04-02 18:40 - 2023-04-02 18:40 - 000001767 _____ C:\Users\Public\Desktop\Defraggler.lnk 2023-04-02 18:40 - 2023-04-02 18:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defraggler 2023-04-02 18:40 - 2023-04-02 18:40 - 000000000 ____D C:\Program Files\Defraggler 2023-04-02 18:36 - 2023-04-02 19:56 - 000000000 ____D C:\WINDOWS\system32\oodag 2023-04-02 18:36 - 2023-04-02 18:37 - 000002513 _____ C:\Users\Public\Desktop\O&O Defrag.lnk 2023-04-02 18:36 - 2023-04-02 18:36 - 000000000 ____D C:\ProgramData\OO Software 2023-04-02 18:36 - 2023-04-02 18:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\O&O Software 2023-04-02 18:36 - 2023-04-02 18:36 - 000000000 ____D C:\Program Files\OO Software 2023-04-01 13:16 - 2023-04-01 13:16 - 001273971 _____ C:\Users\user\Downloads\drapeau-course-3d-fond-blanc.zip 2023-03-31 23:44 - 2023-04-01 00:10 - 000000000 ____D C:\Users\user\Desktop\Final M18 A 2023-03-31 17:14 - 2023-03-31 17:23 - 000000000 ____D C:\Users\user\Desktop\Nouveau dossier 2023-03-31 14:55 - 2023-03-31 14:57 - 023743824 _____ C:\Users\user\Downloads\20230331_144753.dng 2023-03-31 14:55 - 2023-03-31 14:55 - 000000000 ____D C:\Users\user\AppData\Local\sendanywhere-updater 2023-03-31 14:55 - 2023-03-31 14:55 - 000000000 ____D C:\Users\user\AppData\Local\Send Anywhere 2023-03-29 09:47 - 2023-03-29 09:47 - 000002061 _____ C:\Users\Public\Desktop\McAfee®.lnk 2023-03-29 09:43 - 2023-03-07 17:02 - 000027136 _____ (The OpenVPN Project) C:\WINDOWS\system32\Drivers\tap0901.sys 2023-03-29 07:41 - 2023-03-29 07:41 - 000005238 _____ C:\Users\user\Downloads\20230326_5134_LAZARE_STÉPHANE.pdf 2023-03-28 14:37 - 2023-03-28 14:37 - 000000000 ____D C:\WINDOWS\Panther 2023-03-28 13:58 - 2023-04-24 17:07 - 000000000 ____D C:\Users\user\Desktop\CHANTAL MARTIN 2023-03-28 00:31 - 2023-03-28 00:31 - 000024162 _____ C:\Users\user\Downloads\Avis de paiement (2023-03-28).pdf 2023-03-27 18:27 - 2023-03-27 18:27 - 000888600 _____ (Google LLC) C:\Users\Public\Documents\gcapi.dll ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2023-04-26 08:08 - 2022-05-07 01:24 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2023-04-26 07:48 - 2022-05-07 01:24 - 000000000 ____D C:\WINDOWS\SystemTemp 2023-04-26 07:45 - 2022-05-07 01:24 - 000000000 ____D C:\WINDOWS\AppReadiness 2023-04-26 07:44 - 2022-10-10 09:23 - 000003752 _____ C:\WINDOWS\system32\Tasks\AsusSystemAnalysis_754F3273-0563-4F20-B12F-826510B07474 2023-04-26 07:40 - 2022-02-08 11:44 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2023-04-26 07:37 - 2021-11-17 06:32 - 000000000 __SHD C:\Users\user\IntelGraphicsProfiles 2023-04-25 23:44 - 2023-03-22 23:48 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2023-04-25 23:38 - 2021-11-23 16:28 - 000000000 ____D C:\Program Files\Mozilla Firefox 2023-04-25 23:38 - 2021-11-16 16:08 - 000001007 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2023-04-25 23:38 - 2021-11-16 16:08 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2023-04-25 23:02 - 2022-07-05 19:01 - 000000000 ____D C:\Users\user\AppData\Roaming\Messenger 2023-04-25 23:02 - 2022-07-05 19:01 - 000000000 ____D C:\Users\user\AppData\Local\Messenger 2023-04-25 23:02 - 2021-11-17 06:32 - 000000000 ___SD C:\Users\user\AppData\Roaming\Microsoft\Credentials 2023-04-25 22:44 - 2022-10-10 09:18 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2023-04-25 22:21 - 2022-05-07 01:22 - 000000000 ____D C:\WINDOWS\INF 2023-04-25 22:17 - 2022-05-07 01:24 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2023-04-25 22:11 - 2022-10-10 09:27 - 001803986 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2023-04-25 22:05 - 2022-10-10 09:23 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2023-04-25 22:05 - 2022-05-07 01:24 - 000000000 ____D C:\WINDOWS\ServiceState 2023-04-25 22:05 - 2022-05-07 01:17 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2023-04-25 22:05 - 2021-09-01 15:19 - 000000000 ___HD C:\Intel 2023-04-25 22:05 - 2020-11-21 05:08 - 000012288 ___SH C:\DumpStack.log.tmp 2023-04-25 22:03 - 2022-10-10 09:18 - 000001623 _____ C:\WINDOWS\system32\config\VSMIDK 2023-04-25 21:34 - 2022-10-10 09:18 - 000490120 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2023-04-25 21:33 - 2022-05-07 06:23 - 000000000 ____D C:\WINDOWS\SysWOW64\fr 2023-04-25 21:33 - 2022-05-07 06:23 - 000000000 ____D C:\WINDOWS\system32\fr 2023-04-25 21:33 - 2022-05-07 01:24 - 000000000 ___SD C:\WINDOWS\system32\UNP 2023-04-25 21:33 - 2022-05-07 01:24 - 000000000 ___RD C:\WINDOWS\PrintDialog 2023-04-25 21:33 - 2022-05-07 01:24 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2023-04-25 21:33 - 2022-05-07 01:24 - 000000000 ____D C:\WINDOWS\UUS 2023-04-25 21:33 - 2022-05-07 01:24 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2023-04-25 21:33 - 2022-05-07 01:24 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2023-04-25 21:33 - 2022-05-07 01:24 - 000000000 ____D C:\WINDOWS\SystemResources 2023-04-25 21:33 - 2022-05-07 01:24 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2023-04-25 21:33 - 2022-05-07 01:24 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2023-04-25 21:33 - 2022-05-07 01:24 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences 2023-04-25 21:33 - 2022-05-07 01:24 - 000000000 ____D C:\WINDOWS\system32\Sgrm 2023-04-25 21:33 - 2022-05-07 01:24 - 000000000 ____D C:\WINDOWS\system32\setup 2023-04-25 21:33 - 2022-05-07 01:24 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2023-04-25 21:33 - 2022-05-07 01:24 - 000000000 ____D C:\WINDOWS\system32\oobe 2023-04-25 21:33 - 2022-05-07 01:24 - 000000000 ____D C:\WINDOWS\system32\Dism 2023-04-25 21:33 - 2022-05-07 01:24 - 000000000 ____D C:\WINDOWS\ShellExperiences 2023-04-25 21:33 - 2022-05-07 01:24 - 000000000 ____D C:\WINDOWS\ShellComponents 2023-04-25 21:33 - 2022-05-07 01:24 - 000000000 ____D C:\WINDOWS\Provisioning 2023-04-25 21:33 - 2022-05-07 01:24 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2023-04-25 21:33 - 2022-05-07 01:24 - 000000000 ____D C:\WINDOWS\bcastdvr 2023-04-25 21:27 - 2022-05-07 06:34 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll 2023-04-25 21:27 - 2022-05-07 06:34 - 000023775 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml 2023-04-25 21:27 - 2022-05-07 01:25 - 000076800 _____ (Khronos Group) C:\WINDOWS\SysWOW64\opencl.dll 2023-04-25 21:27 - 2022-05-07 01:24 - 000118784 _____ (Khronos Group) C:\WINDOWS\system32\opencl.dll 2023-04-25 21:27 - 2022-05-07 01:17 - 000000000 ____D C:\WINDOWS\CbsTemp 2023-04-25 21:24 - 2022-10-10 09:23 - 003211776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2023-04-25 20:59 - 2022-10-10 09:23 - 000000000 ____D C:\WINDOWS\system32\Tasks\McAfee 2023-04-25 13:11 - 2021-11-30 01:12 - 000002375 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Secure Browser.lnk 2023-04-25 08:31 - 2022-05-07 01:24 - 000000000 ___HD C:\Program Files\WindowsApps 2023-04-25 08:31 - 2021-12-06 00:06 - 000000000 ____D C:\Users\user\AppData\Local\CrashDumps 2023-04-25 08:30 - 2022-05-07 01:24 - 000000000 ____D C:\WINDOWS\system32\SecurityHealth 2023-04-25 07:53 - 2021-11-16 16:08 - 000000000 ____D C:\Program Files (x86)\Google 2023-04-24 09:49 - 2021-11-30 01:12 - 000000000 ____D C:\Program Files (x86)\LihiStriakeTe 2023-04-23 15:25 - 2021-09-01 15:19 - 000000000 ____D C:\ProgramData\ASUS 2023-04-22 07:12 - 2022-05-07 01:17 - 000008192 _____ C:\WINDOWS\system32\config\ELAM 2023-04-22 07:12 - 2021-12-12 23:08 - 000000000 ____D C:\Program Files\Microsoft OneDrive 2023-04-22 00:51 - 2022-10-10 09:23 - 000003122 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-812095653-312240268-3792784526-1001 2023-04-22 00:51 - 2022-10-10 09:23 - 000002776 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task 2023-04-22 00:50 - 2022-10-10 09:23 - 000003678 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2023-04-22 00:50 - 2022-10-10 09:23 - 000003586 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2023-04-22 00:50 - 2022-10-10 09:23 - 000003542 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2023-04-22 00:50 - 2022-10-10 09:23 - 000003454 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2023-04-22 00:50 - 2022-10-10 09:23 - 000003362 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2023-04-22 00:46 - 2021-11-19 21:19 - 000000000 ____D C:\Program Files (x86)\Glary Utilities 5 2023-04-21 17:30 - 2021-11-30 21:25 - 000002134 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2023-04-20 01:32 - 2021-11-16 17:36 - 000000000 ____D C:\Users\user\AppData\Local\D3DSCache 2023-04-20 00:30 - 2021-11-17 16:12 - 000000000 ____D C:\Users\user\AppData\LocalLow\Mozilla 2023-04-18 17:20 - 2021-09-01 14:26 - 000000000 ____D C:\Program Files (x86)\McAfee 2023-04-16 21:31 - 2022-12-14 00:56 - 000001290 _____ C:\Users\user\AppData\Local\TempIM-Config.xml 2023-04-15 16:14 - 2021-11-30 21:55 - 000000000 ____D C:\Program Files\Microsoft Office 2023-04-13 20:25 - 2022-10-11 13:05 - 000002075 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk 2023-04-13 20:25 - 2022-10-11 13:05 - 000002063 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk 2023-04-12 23:46 - 2022-05-07 01:24 - 000000000 ____D C:\WINDOWS\system32\appraiser 2023-04-11 23:41 - 2021-11-16 17:55 - 000000000 ____D C:\WINDOWS\system32\MRT 2023-04-11 23:37 - 2021-11-16 17:55 - 156112424 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2023-04-11 23:28 - 2020-11-21 05:09 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2023-04-11 16:51 - 2022-10-28 17:31 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP 2023-04-11 16:51 - 2022-10-28 17:31 - 000000000 ____D C:\Program Files\HPPrintScanDoctor 2023-04-06 17:02 - 2021-12-01 16:43 - 000000000 ____D C:\Program Files\Adobe 2023-04-06 17:02 - 2021-12-01 16:42 - 000000000 ____D C:\Program Files\Common Files\Adobe 2023-04-06 16:59 - 2021-11-17 06:34 - 000000000 ____D C:\ProgramData\Packages 2023-04-06 16:59 - 2021-11-17 06:32 - 000000000 ____D C:\Users\user\AppData\Local\Packages 2023-04-06 16:52 - 2021-11-16 16:54 - 000000000 ____D C:\Users\user\AppData\Local\Adobe 2023-04-06 15:59 - 2022-10-10 09:23 - 000002282 _____ C:\WINDOWS\system32\Tasks\GU5SkipUAC 2023-04-06 10:21 - 2022-10-10 22:59 - 000142972 ____H C:\Users\user\AppData\Local\IconCache.db.backup 2023-04-06 09:47 - 2023-03-18 10:56 - 000000000 ____D C:\Users\user\Documents\Adobe 2023-04-06 09:47 - 2021-11-17 06:32 - 000000000 ____D C:\Users\user\AppData\Roaming\Adobe 2023-04-05 02:39 - 2021-11-16 17:31 - 000949472 _____ (Trellix US LLC.) C:\WINDOWS\system32\Drivers\mfehidk.sys 2023-04-05 02:39 - 2021-11-16 17:31 - 000233176 _____ (Trellix US LLC.) C:\WINDOWS\system32\Drivers\mfewfpk.sys 2023-04-05 02:39 - 2021-11-16 17:31 - 000085456 _____ (Trellix US LLC.) C:\WINDOWS\system32\Drivers\mfeelamk.sys 2023-04-05 02:39 - 2021-09-01 14:28 - 001183848 _____ (McAfee, LLC) C:\WINDOWS\system32\mfevtps.exe 2023-04-05 02:39 - 2020-09-22 21:22 - 000464080 _____ (Trellix US LLC.) C:\WINDOWS\system32\Drivers\mfefirek.sys 2023-04-05 02:39 - 2020-09-22 21:22 - 000070880 _____ (Trellix US LLC.) C:\WINDOWS\system32\Drivers\cfwids.sys 2023-04-02 20:04 - 2023-03-18 13:48 - 000000000 ____D C:\Users\user\Desktop\logo lazare 2023-04-02 19:46 - 2022-05-07 01:24 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2023-04-02 08:37 - 2023-03-26 20:48 - 000000000 ____D C:\Users\user\Desktop\M18 BB 2023-04-01 00:25 - 2021-12-05 14:26 - 000000000 ____D C:\Users\user\AppData\Roaming\Send Anywhere 2023-04-01 00:04 - 2023-03-25 21:21 - 000000000 ____D C:\Users\user\Desktop\FINAL P.A.T 2023-03-31 14:55 - 2021-12-05 14:23 - 000002381 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Send Anywhere.lnk 2023-03-31 14:55 - 2021-12-05 14:23 - 000002369 _____ C:\Users\Public\Desktop\Send Anywhere.lnk 2023-03-31 14:55 - 2021-12-05 14:23 - 000000000 ____D C:\Program Files (x86)\Send Anywhere 2023-03-30 00:08 - 2023-02-27 16:59 - 000001415 _____ C:\Users\user\Desktop\shutdown.lnk 2023-03-30 00:08 - 2021-11-22 20:03 - 000001040 _____ C:\Users\user\Desktop\VirtualDJ PRO Full.lnk 2023-03-30 00:08 - 2021-11-19 08:28 - 000001133 _____ C:\Users\user\Desktop\PhotoFiltre 7.lnk 2023-03-30 00:08 - 2021-11-17 11:56 - 000002915 _____ C:\Users\user\Desktop\Welcome to Prime Video.lnk 2023-03-29 09:44 - 2021-09-01 14:26 - 000000000 ____D C:\Program Files\Common Files\McAfee 2023-03-29 09:43 - 2022-10-10 09:23 - 000003338 _____ C:\WINDOWS\system32\Tasks\McAfeeLogon ==================== Fichiers à la racine de certains dossiers ======== 2022-04-12 16:08 - 2022-04-12 16:08 - 000000132 _____ () C:\Users\user\AppData\Roaming\Adobe BMP Format CS5 Prefs 2022-03-13 01:32 - 2022-03-13 01:32 - 000000132 _____ () C:\Users\user\AppData\Roaming\Adobe GIF Format CS5 Prefs 2022-03-13 01:31 - 2022-12-14 21:29 - 000000132 _____ () C:\Users\user\AppData\Roaming\Adobe PNG Format CS5 Prefs 2023-04-25 08:35 - 2023-04-25 08:35 - 000197487 _____ () C:\Users\user\AppData\Roaming\GhyqW.bat 2023-04-25 22:06 - 2023-04-25 21:24 - 000454144 ___SH (Microsoft Corporation) C:\Users\user\AppData\Roaming\GhyqW.bat.exe 2023-04-25 08:35 - 2023-04-25 08:35 - 000000127 _____ () C:\Users\user\AppData\Roaming\GhyqW.vbs 2023-04-25 08:35 - 2023-04-25 08:35 - 000636712 _____ () C:\Users\user\AppData\Roaming\iMhjt.bat 2023-04-25 22:01 - 2023-04-25 21:24 - 000454144 ___SH (Microsoft Corporation) C:\Users\user\AppData\Roaming\iMhjt.bat.exe 2023-04-25 08:35 - 2023-04-25 08:35 - 000000127 _____ () C:\Users\user\AppData\Roaming\iMhjt.vbs 2021-11-30 01:12 - 2021-11-30 01:12 - 000016438 _____ () C:\Users\user\AppData\Local\partner.bmp 2023-04-25 22:21 - 2023-04-25 22:21 - 000000017 _____ () C:\Users\user\AppData\Local\resmon.resmoncfg 2022-12-14 00:56 - 2023-04-16 21:31 - 000001290 _____ () C:\Users\user\AppData\Local\TempIM-Config.xml ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================