Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 15-07-2023 Exécuté par Georges (administrateur) sur LAPTOP-P8QU8LK8 (HP HP Pavilion Laptop 15-cs0xxx) (16-07-2023 11:12:13) Exécuté depuis C:\Users\Georges\Desktop\FRST64.exe Profils chargés: Georges Plate-forme: Microsoft Windows 11 Famille Version 22H2 22621.1992 (X64) Langue: Français (France) Navigateur par défaut: Edge Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (C:\Program Files\Microsoft Office\root\Office16\OUTLOOK.EXE ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\ai.exe (C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_423.13900.0.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\114.0.1823.82\msedgewebview2.exe <6> (DriverStore\FileRepository\igdlh64.inf_amd64_618947f7f882ca01\igfxCUIService.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_618947f7f882ca01\igfxEM.exe (ETDCtrl.exe ->) (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ETDTouch.exe (ETDService.exe ->) (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ETDCtrl.exe (ETDService.exe ->) (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ETDCtrlHelper.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <21> (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\OUTLOOK.EXE (explorer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wscript.exe (explorer.exe ->) (Thomas Ascher) [Fichier non signé] C:\Program Files (x86)\ATnotes\ATnotes.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.272\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.272\GoogleCrashHandler64.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (Conexant Systems LLC -> Conexant Systems LLC.) C:\Windows\System32\CxAudioSvc.exe (services.exe ->) (Conexant Systems LLC -> Synaptics Incorporated.) C:\Windows\System32\SynAudSrv.exe (services.exe ->) (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ETDService.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_4a3ae74cfa6c37d6\esif_uf.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iaahcic.inf_amd64_3de4831720bb2934\RstMwService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe (services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Windows\SysWOW64\XtuService.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe (services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_618947f7f882ca01\igfxCUIService.exe (services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_618947f7f882ca01\IntelCpHDCPSvc.exe (services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_618947f7f882ca01\IntelCpHeciSvc.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\NisSrv.exe (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe (services.exe ->) (Sound Research Corporation -> Sound Research, Corp.) C:\Windows\System32\SECOMN64.exe (svchost.exe ->) (Adobe Systems Incorporated -> ) C:\Program Files\WindowsApps\ReaderNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe (svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe (svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.StorePurchaseApp_22305.1401.2.0_x64__8wekyb3d8bbwe\StoreExperienceHost.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.21502.0_x64__8wekyb3d8bbwe\HxOutlook.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.21502.0_x64__8wekyb3d8bbwe\HxTsr.exe (svchost.exe ->) (Microsoft Windows -> ) C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_423.13900.0.0_x64__cw5n1h2txyewy\Dashboard\WidgetService.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\LocationNotificationWindows.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [321096 2017-11-27] (Intel(R) Rapid Storage Technology -> Intel Corporation) HKLM\...\Run: [RtlS5Wake] => C:\Program Files (x86)\Realtek\PCIE Wireless LAN\RtlS5Wake\RtlS5Wake.exe [2097600 2019-01-18] (Realtek Semiconductor Corp. -> Realtek) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3831808 2021-08-30] (Microsoft Windows Hardware Compatibility Publisher -> Logitech) HKLM-x32\...\Run: [RtlS5Wake] => C:\Program Files (x86)\Realtek\PCIE Wireless LAN\RtlS5Wake\RtlS5Wake.exe [2097600 2019-01-18] (Realtek Semiconductor Corp. -> Realtek) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [601424 2018-12-16] (Oracle America, Inc. -> Oracle Corporation) HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restriction <==== ATTENTION HKU\S-1-5-21-1931265965-2266197506-1945926029-1001\...\Run: [HP OfficeJet 6950 (NET)] => C:\Program Files\HP\HP OfficeJet 6950\Bin\ScanToPCActivationApp.exe [3770504 2016-11-22] (Hewlett Packard -> HP Inc.) HKU\S-1-5-21-1931265965-2266197506-1945926029-1001\...\Run: [ATnotes.exe] => C:\Program Files (x86)\ATnotes\ATnotes.exe [1015808 2005-01-05] (Thomas Ascher) [Fichier non signé] HKU\S-1-5-21-1931265965-2266197506-1945926029-1001\...\Run: [MicrosoftEdgeAutoLaunch_CF43BED4C0EA078EDA5F851EB101FDDE] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4113856 2023-07-13] (Microsoft Corporation -> Microsoft Corporation) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\114.0.5735.199\Installer\chrmstp.exe [2023-06-29] (Google LLC -> Google LLC) HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] -> Startup: C:\Users\Georges\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\FullBat - Raccourci (2).lnk [2023-06-23] ShortcutTarget: FullBat - Raccourci (2).lnk -> C:\Users\Georges\Desktop\FullBat.vbs () [Fichier non signé] Startup: C:\Users\Georges\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Outlook.lnk [2023-06-09] ShortcutTarget: Outlook.lnk -> C:\Program Files\Microsoft Office\root\Office16\OUTLOOK.EXE (Microsoft Corporation -> Microsoft Corporation) HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {E75E34B6-6A3B-499C-B52F-61C78B8EE465} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564152 2023-04-03] (Adobe Inc. -> Adobe Inc.) Task: {A7A69B51-282D-4455-AA93-C20E849B14FD} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-08-29] (Google Inc -> Google LLC) Task: {B2E73118-B178-41FD-AE05-8C346492BD88} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-08-29] (Google Inc -> Google LLC) Task: {B15E615C-9CFB-4C41-89FF-74CAF00C5126} - System32\Tasks\Hewlett-Packard\HP Diagnostics\ABO => C:\WINDOWS\system32\cmd.exe [323584 2023-04-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://ABO Task: {6909F965-12CB-49B2-B341-62F916CA6D91} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BatteryStatusError => C:\WINDOWS\system32\cmd.exe [323584 2023-04-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BatteryStatusError Task: {62FAF34B-3E46-4936-8B72-A63FF3BB40B7} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BatteryStatusTest => C:\WINDOWS\system32\cmd.exe [323584 2023-04-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BatteryStatusTest Task: {F9A3971B-F25D-4D3B-A372-E60E5B875540} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BCF => C:\WINDOWS\system32\cmd.exe [323584 2023-04-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BCF Task: {55BA7D3A-8416-4D54-9FFB-84BB7A921D40} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BHM1 => C:\WINDOWS\system32\cmd.exe [323584 2023-04-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BHM1 Task: {A20E115C-76ED-41D2-B471-D0D75F74C4A4} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BHM2 => C:\WINDOWS\system32\cmd.exe [323584 2023-04-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BHM2 Task: {C8863ACB-B8C4-43F9-9401-9D824FF3A86F} - System32\Tasks\Hewlett-Packard\HP Diagnostics\FastSystemTests => C:\WINDOWS\system32\cmd.exe [323584 2023-04-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://FastSystemTests Task: {23C3DFB3-4531-40C8-B0AD-4E94F3DC5531} - System32\Tasks\Hewlett-Packard\HP Diagnostics\HPDIAGS-ea15c6d4-e05d-43ca-ae49-90bcd724656b => C:\Program Files (x86)\HP\HpHwDiag\HpHwDiagA.exe [62200496 2019-07-19] (HP Inc. -> ) Task: {F7932B70-EE68-4CF4-A0CB-92504ECFE06D} - System32\Tasks\Hewlett-Packard\HP Diagnostics\LaunchUI => C:\WINDOWS\system32\cmd.exe [323584 2023-04-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://LaunchUI Task: {8AAFF645-EF9F-4FB7-89B1-97529C1A253C} - System32\Tasks\Hewlett-Packard\HP Diagnostics\ShowUI => C:\WINDOWS\system32\cmd.exe [323584 2023-04-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags: Task: {15EC0B82-1140-42CE-9AAD-68E0ADE05757} - System32\Tasks\Hewlett-Packard\HP Diagnostics\SmartCheckError => C:\WINDOWS\system32\cmd.exe [323584 2023-04-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://SmartCheckError Task: {717690DF-F14A-44A1-89D2-91D2E8F6851F} - System32\Tasks\Hewlett-Packard\HP Diagnostics\SmartCheckTest => C:\WINDOWS\system32\cmd.exe [323584 2023-04-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://SmartCheckTest Task: {48E952CC-683A-44F1-A535-CEE51BCB2236} - System32\Tasks\Hewlett-Packard\HP Web Products Detection => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPWPD.exe /Register (Pas de fichier) Task: {6980BAA8-A5CA-4CB5-8C29-8C305B1F30A0} - System32\Tasks\Hewlett-Packard\HPDeviceCheck => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPDeviceCheck.exe /Register (Pas de fichier) Task: {4A01C3EF-2775-4DC5-9716-CBAB6F9F4050} - System32\Tasks\HPAudioSwitch => C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe [1644960 2017-02-02] (HP Inc. -> HP Inc.) Task: {E089EE4F-24E4-4780-A044-415D8FD5BB4F} - System32\Tasks\HPJumpStartLaunch => "C:\Program Files (x86)\HP\HP JumpStart Launch\HPJumpStartLaunch.exe" (Pas de fichier) Task: {9D98ABDC-5C23-417F-8A9F-DA5901EB7B41} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26616792 2023-07-01] (Microsoft Corporation -> Microsoft Corporation) Task: {A78A2B87-2026-4368-BBD3-7153E7500950} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26616792 2023-07-01] (Microsoft Corporation -> Microsoft Corporation) Task: {DA4255B0-96CB-4E20-A947-6A8929090E20} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [158664 2023-07-01] (Microsoft Corporation -> Microsoft Corporation) Task: {6796F10E-323F-4AFC-B3AC-B5F02D819514} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [158664 2023-07-01] (Microsoft Corporation -> Microsoft Corporation) Task: {DCE332EF-5A4C-4AE3-A65E-DEC2B1E1199B} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [164752 2023-07-01] (Microsoft Corporation -> Microsoft Corporation) Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (Pas de fichier) Task: {6ECC17BA-2F21-4D1D-A937-AF5B7E29ED7A} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot => %systemroot%\system32\MusNotification.exe RebootDialog (Pas de fichier) Task: {6681DC4A-725B-43A3-802F-639242A1847C} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog (Pas de fichier) Task: {5352E408-E477-4D11-850C-B49A2A5E69D2} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog (Pas de fichier) Task: {682CC9B6-D168-4957-99B3-81C89C2D7D1C} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display => %systemroot%\system32\MusNotification.exe Display (Pas de fichier) Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (Pas de fichier) Task: {B1F1DC1B-8169-47FC-983E-57D26A7545EF} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MpCmdRun.exe [1650040 2023-06-13] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {94462307-E661-4996-A5BA-30BDBDE7E1EE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MpCmdRun.exe [1650040 2023-06-13] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {CB144DE7-254B-4841-92A5-8524C6E9EC7E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MpCmdRun.exe [1650040 2023-06-13] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {3BE58D6E-1C58-4FC7-A5F9-55206882A208} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MpCmdRun.exe [1650040 2023-06-13] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {CBD0A7E7-C561-4F1D-B581-DFFB7CA98BD2} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [661408 2022-12-26] (Mozilla Corporation -> Mozilla Corporation) -> --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {37208E62-8794-4447-997E-4256FA44FB80} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [694688 2022-12-26] (Mozilla Corporation -> Mozilla Foundation) Task: {8AE4AE90-B890-4078-B48A-981CD45A7C12} - System32\Tasks\RtkAudUService64_BG => C:\WINDOWS\system32\RtkAudUService64.exe [868128 2020-05-14] (Realtek Semiconductor Corp. -> Realtek Semiconductor) Task: {105B908F-5F9A-4AF1-A2F8-DCC273C3D44D} - System32\Tasks\S-1-5-21-1931265965-2266197506-1945926029-1001\DataSenseLiveTileTask => %SystemRoot%\System32\DataUsageLiveTileTask.exe (Pas de fichier) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{2c563da1-f7c6-404b-80a2-5f7e4b0c48ac}: [DhcpNameServer] 192.168.1.1 Edge: ======= DownloadDir: C:\Users\Georges\Downloads Edge HomeButtonPage: HKU\S-1-5-21-1931265965-2266197506-1945926029-1001 -> about:start Edge Notifications: HKU\S-1-5-21-1931265965-2266197506-1945926029-1001 -> hxxps://www.monwindows.com Edge Extension: (Adblock Plus) -> 10_EyeoGmbHAdblockPlus_d55gg7py3s0m0 => C:\Program Files\WindowsApps\EyeoGmbH.AdblockPlus_0.9.19.0_neutral__d55gg7py3s0m0 [2022-09-28] Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)] Edge Extension: (Pas de nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [non trouvé(e)] Edge Extension: (AdGuard AdBlocker) -> EdgeExtension_AdguardAdguardAdBlocker_m055xr0c82818 => C:\Program Files\WindowsApps\Adguard.AdguardAdBlocker_3.3.8.0_neutral__m055xr0c82818 [2020-01-09] Edge Extension: (AdBlocker Ultimate) -> EdgeExtension_SecureDownloadLtdAdBlockerUltimate_2k66023rjqqqe => C:\Program Files\WindowsApps\SecureDownloadLtd.AdBlockerUltimate_2.29.0.0_neutral__2k66023rjqqqe [non trouvé(e)] Edge Extension: (Norton Safe Web) -> EdgeExtension_SymantecCorporationNortonSafeWeb_v68kp9n051hdp => C:\Program Files\WindowsApps\SymantecCorporation.NortonSafeWeb_3.11.6.0_neutral__v68kp9n051hdp [non trouvé(e)] Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)] Edge Extension: (Translator pour Microsoft Edge) -> MicrosoftTranslate_MicrosoftTranslatorforMicrosoftEdge_8wekyb3d8bbwe => C:\Program Files\WindowsApps\Microsoft.TranslatorforMicrosoftEdge_0.91.51.0_neutral__8wekyb3d8bbwe [2022-09-28] Edge Extension: (Pas de nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [non trouvé(e)] Edge DefaultProfile: Default Edge Profile: C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default [2023-07-16] Edge Notifications: Default -> hxxps://www.monwindows.com; hxxps://www.msn.com Edge HomePage: Default -> about:start Edge StartupUrls: Default -> "hxxps://www.google.be/" Edge NewTab: Default -> Not-active:"chrome-extension://eoigllimhcllmhedfbmahegmoakcdakd/homePageRedirect.html" Edge DefaultSearchURL: Default -> hxxps://www.google.be/search?sxsrf=ALeKk03aJOkCs85nFImULwGiTpH9WzfAsw%3A1602328735945&source=hp&ei=n5iBX5XHNom3kwWBwpbQCg&q={searchTerms}&btnK=Recherche+Google&oq=&gs_lcp=CgZwc3ktYWIQARgAMgcIIxDqAhAnMgcIIxDqAhAnMgcIIxDqAhAnMgcIIxDqAhAnMgcIIxDqAhAnMgcIIxDqAhAnMgcIIxDqAhAnMgcIIxDqAhAnMgcIIxDqAhAnMgcIIxDqAhAnUABYAGCyGmgBcAB4AIABAIgBAJIBAJgBAKoBB2d3cy13aXqwAQo&sclient=psy-ab Edge Extension: (Zoom pour Microsoft Edge) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\akclpjahoedloodjomjhnlmmblikemjj [2020-10-03] Edge Extension: (Traduire en un clic) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\angkbadadjnbahimnajiklidgpnkmdhb [2020-12-11] Edge Extension: (LastPass: Free Password Manager) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bbcinlkgjjkejfdpemiealijmmooekmp [2023-07-04] Edge Extension: (Norton Safe Web) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bdaafgjhhjkdplpffldcncdignokfkbo [2023-05-09] Edge Extension: (AdGuard AdBlocker) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bgnkhhnnamicmpeenaelnjfhikgbkllg [2023-06-02] Edge Extension: (Avira Password Manager) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\caljgklbbfbcjjanaijlacgncafpegll [2023-07-12] Edge Extension: (Send from Gmail - Share a Link Via Email) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\cdijlhinpfaicncjgpiaaacbplpflfld [2023-02-17] Edge Extension: (Notifier for Gmail™) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\cmhmeappbhdaifkknkhdnmogalbnhloa [2022-11-01] Edge Extension: (CNRTL - CNRTL.fr) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\cojebfpfaaikknofipcimmgclgdkihcp [2020-09-22] Edge Extension: (Le nouveau wiki) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dmjnnfiljnkmkldhngkeajedeccmmpbo [2020-10-03] Edge Extension: (Better Wiktionary) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ejcknjakmamlgglhgedekeaooallnibb [2022-04-20] Edge Extension: (Share link via email) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ejdbkikfbnnhmachnnomjfgjbgkcnjkb [2021-04-30] Edge Extension: (Avira Password Manager) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\emgfgdclgfeldebanedpihppahgngnle [2023-04-11] Edge Extension: (Norton Safe) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\eoigllimhcllmhedfbmahegmoakcdakd [2023-05-10] Edge Extension: (McAfee® WebAdvisor) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fdhgeoginicibhagdmblfikbgbkahibd [2023-06-13] Edge Extension: (Send to Mail) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ffcinmkbpiamlpccghkkglghggpahnab [2021-03-22] Edge Extension: (Remplissage auto Microsoft) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fiedbfgcleddlbcmgdigjgdfcggjcion [2023-07-06] Edge Extension: (Send URL) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fmanefafgomooabofffoidipbfdbjilh [2020-12-10] Edge Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gmgoamodcdcjnbaobigkjelfplakmdhh [2023-07-14] Edge Extension: (Traduire le texte sélectionné) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hdjapebmiepclngcmnjaaiincnllakpg [2022-11-17] Edge Extension: (Edge relevant text changes) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-04-24] Edge Extension: (Dictionnaire : définitions mots français) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kddmkefoecfohkbmcgkdpfhgghfnpbij [2021-11-27] Edge Extension: (Microsoft Outlook) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kkpalkknhlklpbflpcpkepmmbnmfailf [2022-05-21] Edge Extension: (McAfee® Web Boost) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\klekeajafkkpokaofllcadenjdckhinm [2023-05-10] Edge Extension: (Send URL by Email) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kncmeaikagaadnmlkglpfddfffmkoijj [2020-09-22] Edge Extension: (Zoom pour Google Chrome) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\lajondecmobodlejlcjllhojikagldgd [2021-12-01] Edge Extension: (McAfee® Web Boost) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\lamehkegphbbfdailghaeeleoajilfho [2023-05-10] Edge Extension: (Norton Password Manager) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\lcccdlklhahfmobgpnilndimkankpnkg [2023-06-29] Edge Extension: (Wikipedia Search) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\lipakennkogpodadpikgipnogamhklmk [2022-12-12] Edge Extension: (Zoom) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mejkfbelpffdgpgihhfpjchilnfjmacb [2020-10-06] Edge Extension: (Send URL by Email) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mekllbldjjejnkmomdclgkomcnlbddfj [2020-12-10] Edge Extension: (Mail this link) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ngjdhjgbagpeimgpgloofkfoipgpdgdb [2020-11-20] Edge Extension: (mailto) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\nhfdmebpfpogeakgjmgbalpnmggnnchj [2020-12-10] Edge Extension: (ImTranslator: Traducteur, Dictionnaire, Voix) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\noaijdpnepcgjemiklgfkcfbkokogabh [2023-06-27] Edge Extension: (Authenticator: 2FA Client) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ocglkepbibnalbgmbachknglpdipeoio [2021-12-08] Edge Extension: (Send to Mail) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ofphfidloeekhngliaoejpciinijnjbf [2023-02-17] Edge Extension: (Zoom Plus) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ohneljbgaibmnihjhjgiekmncoeaeilg [2020-12-19] Edge Extension: (Scroll Zoom) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\pafomddlmihbmamkddcolihjafncmigm [2022-12-20] Edge Extension: (AdBlocker Ultimate) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\pciakllldcajllepkbbihkmfkikheffb [2023-05-22] Edge Extension: (AdGuard AdBlocker) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\pdffkfellgipmhklpdmokmckkkfcopbh [2023-07-15] Edge Extension: (Safe3 safe browsing) - C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\pimlkaibgdfmbenlhmbjllfkbcfhfnjg [2023-06-13] Edge Profile: C:\Users\Georges\AppData\Local\Microsoft\Edge\User Data\Guest Profile [2023-06-29] FireFox: ======== FF DefaultProfile: 3t44ryu9.default FF ProfilePath: C:\Users\Georges\AppData\Roaming\Mozilla\Firefox\Profiles\3t44ryu9.default [2023-03-17] FF Homepage: Mozilla\Firefox\Profiles\3t44ryu9.default -> about:blank FF Notifications: Mozilla\Firefox\Profiles\3t44ryu9.default -> hxxps://www.monwindows.com FF Extension: (AdGuard AdBlocker) - C:\Users\Georges\AppData\Roaming\Mozilla\Firefox\Profiles\3t44ryu9.default\Extensions\adguardadblocker@adguard.com.xpi [2022-12-26] FF Extension: (Norton Safe Web) - C:\Users\Georges\AppData\Roaming\Mozilla\Firefox\Profiles\3t44ryu9.default\Extensions\nortonsafeweb@symantec.com.xpi [2022-12-26] FF Extension: (Google Translator for Firefox) - C:\Users\Georges\AppData\Roaming\Mozilla\Firefox\Profiles\3t44ryu9.default\Extensions\translator@zoli.bod.xpi [2019-01-25] FF Extension: (Zoom) - C:\Users\Georges\AppData\Roaming\Mozilla\Firefox\Profiles\3t44ryu9.default\Extensions\zoom@stefanvd.net.xpi [2019-09-12] FF Extension: (Traducteur Google dans le menu contextuel) - C:\Users\Georges\AppData\Roaming\Mozilla\Firefox\Profiles\3t44ryu9.default\Extensions\{8e6a181e-40ce-43ff-9436-c68e42e5aef7}.xpi [2020-09-22] FF Extension: (ImTranslator: Traducteur, Dictionnaire, Voix) - C:\Users\Georges\AppData\Roaming\Mozilla\Firefox\Profiles\3t44ryu9.default\Extensions\{9AA46F4F-4DC7-4c06-97AF-5035170634FE}.xpi [2022-12-26] FF Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\Georges\AppData\Roaming\Mozilla\Firefox\Profiles\3t44ryu9.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2022-12-26] FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt => non trouvé(e) FF Plugin: @java.com/DTPlugin,version=11.201.2 -> C:\Program Files\Java\jre1.8.0_201\bin\dtplugin\npDeployJava1.dll [2019-01-23] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.201.2 -> C:\Program Files\Java\jre1.8.0_201\bin\plugin2\npjp2.dll [2019-01-23] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-08-10] (VideoLAN -> VideoLAN) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2023-07-03] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1234204.dll [2018-06-06] (Adobe Systems, Inc.) [Fichier non signé] FF Plugin-x32: @java.com/DTPlugin,version=11.201.2 -> C:\Program Files (x86)\Java\jre1.8.0_201\bin\dtplugin\npDeployJava1.dll [2019-01-23] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.201.2 -> C:\Program Files (x86)\Java\jre1.8.0_201\bin\plugin2\npjp2.dll [2019-01-23] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\Georges\AppData\Local\Google\Chrome\User Data\Default [2023-03-17] CHR Extension: (Google Docs hors connexion) - C:\Users\Georges\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-03-17] CHR Extension: (Mail this link) - C:\Users\Georges\AppData\Local\Google\Chrome\User Data\Default\Extensions\ngjdhjgbagpeimgpgloofkfoipgpdgdb [2020-11-20] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Georges\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-06] CHR Profile: C:\Users\Georges\AppData\Local\Google\Chrome\User Data\System Profile [2020-01-30] CHR HKLM\...\Chrome\Extension: [enppghjcblldgigemljohkgpcompnjgh] CHR HKLM-x32\...\Chrome\Extension: [enppghjcblldgigemljohkgpcompnjgh] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-04-03] (Adobe Inc. -> Adobe Inc.) S4 BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [305664 2017-11-02] (Realtek Semiconductor Corp.) [Fichier non signé] R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11851144 2023-07-01] (Microsoft Corporation -> Microsoft Corporation) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [230352 2023-06-16] (HP Inc. -> HP Inc.) S3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1149480 2018-06-07] (HP Inc. -> HP) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\NisSrv.exe [3232576 2023-06-13] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MsMpEng.exe [133592 2023-06-13] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 ACSSCR; C:\WINDOWS\system32\DRIVERS\a38usb.sys [86880 2018-07-12] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Card Systems Ltd.) S3 AmUStor; C:\WINDOWS\system32\drivers\AmUStor.SYS [108992 2017-10-17] (Alcorlink Corp. -> ) S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [106496 2022-05-07] (Microsoft Corporation) [Fichier non signé] R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [27552 2019-01-17] (Martin Malik - REALiX -> REALiX(tm)) R3 MpKsl6a4f7de3; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{C8342AF7-AE1E-44DA-8B87-2D671C767E78}\MpKslDrv.sys [221480 2023-07-16] (Microsoft Windows -> Microsoft Corporation) R3 rtcx21; C:\WINDOWS\System32\DriverStore\FileRepository\rtcx21x64.inf_amd64_516e5c9b75c49dc2\rtcx21x64.sys [539648 2022-05-06] (Microsoft Windows -> Realtek) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49560 2023-06-13] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) U5 WdDevFlt; C:\Windows\System32\Drivers\WdDevFlt.sys [169232 2022-05-07] (Microsoft Windows -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [498944 2023-06-13] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [99568 2023-06-13] (Microsoft Windows -> Microsoft Corporation) R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [40104 2022-06-17] (HP Inc. -> HP) S1 WinSetupMon; system32\DRIVERS\WinSetupMon.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2023-07-16 11:12 - 2023-07-16 11:13 - 000036014 _____ C:\Users\Georges\Desktop\FRST.txt 2023-07-16 11:11 - 2023-07-16 11:12 - 000000000 ____D C:\FRST 2023-07-16 11:09 - 2023-07-16 11:07 - 002384384 _____ (Farbar) C:\Users\Georges\Desktop\FRST64.exe 2023-07-16 11:08 - 2023-07-16 11:08 - 002384384 _____ (Farbar) C:\Users\Georges\Downloads\Non confirmé 878499.crdownload 2023-07-16 11:05 - 2023-07-16 11:07 - 002384384 _____ (Farbar) C:\Users\Georges\Downloads\FRST64.exe 2023-07-16 11:03 - 2023-07-16 11:03 - 000851162 _____ C:\WINDOWS\system32\perfh00C.dat 2023-07-16 11:03 - 2023-07-16 11:03 - 000835420 _____ C:\WINDOWS\system32\perfh013.dat 2023-07-16 11:03 - 2023-07-16 11:03 - 000178680 _____ C:\WINDOWS\system32\perfc013.dat 2023-07-16 11:03 - 2023-07-16 11:03 - 000175198 _____ C:\WINDOWS\system32\perfc00C.dat 2023-07-16 10:33 - 2023-07-16 10:57 - 000000000 ____D C:\ProgramData\Avast Software 2023-07-07 11:08 - 2023-07-07 11:08 - 000017637 _____ C:\Users\Georges\Downloads\Nº_de_séquence_2023_00000 (3).pdf 2023-07-05 10:29 - 2023-07-05 10:29 - 000191780 _____ C:\Users\Georges\Downloads\031341.pdf 2023-06-26 11:27 - 2023-06-26 11:27 - 005814224 _____ C:\Users\Georges\Downloads\philips-amf87015.pdf 2023-06-23 16:18 - 2023-06-23 16:18 - 000001012 _____ C:\Users\Georges\Desktop\FullBat - Raccourci (2).lnk 2023-06-22 13:26 - 2023-06-22 13:26 - 000200514 _____ C:\Users\Georges\Downloads\null_202320362379_204122.pdf ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2023-07-16 11:11 - 2022-05-07 07:24 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2023-07-16 11:08 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SystemTemp 2023-07-16 11:03 - 2022-09-28 13:21 - 002981476 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2023-07-16 11:03 - 2022-05-07 07:22 - 000000000 ____D C:\WINDOWS\INF 2023-07-16 11:00 - 2018-12-21 18:25 - 000000000 ____D C:\Program Files (x86)\Google 2023-07-16 10:59 - 2018-12-28 16:04 - 000000000 ____D C:\Users\Georges\Documents\Fichiers Outlook 2023-07-16 10:59 - 2018-12-21 14:39 - 000000000 __SHD C:\Users\Georges\IntelGraphicsProfiles 2023-07-16 10:57 - 2022-09-28 13:23 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2023-07-16 10:57 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\ServiceState 2023-07-16 10:57 - 2022-05-07 07:17 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2023-07-16 10:57 - 2020-05-29 19:28 - 000012288 ___SH C:\DumpStack.log.tmp 2023-07-16 10:41 - 2022-09-28 13:19 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2023-07-16 10:34 - 2022-05-07 07:24 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2023-07-16 10:33 - 2023-04-07 17:21 - 000888600 _____ (Google LLC) C:\Users\Public\Documents\gcapi.dll 2023-07-16 10:01 - 2018-12-28 16:04 - 000000000 ____D C:\Users\Georges\Documents\Georges 2023-07-16 09:09 - 2018-12-21 18:50 - 000000000 ____D C:\Users\Georges\AppData\LocalLow\Mozilla 2023-07-16 07:49 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\AppReadiness 2023-07-16 00:23 - 2022-05-07 07:24 - 000000000 ___HD C:\Program Files\WindowsApps 2023-07-16 00:23 - 2018-12-21 14:39 - 000000000 ____D C:\Users\Georges\AppData\Local\Packages 2023-07-16 00:07 - 2018-12-28 16:14 - 000000000 ____D C:\Users\Georges\AppData\Roaming\Microsoft\Word 2023-07-15 23:44 - 2018-12-21 14:41 - 000000000 ___RD C:\Users\Georges\OneDrive 2023-07-15 23:26 - 2020-09-22 21:48 - 000002449 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2023-07-15 23:26 - 2020-09-22 21:48 - 000002287 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2023-07-15 16:23 - 2018-12-28 16:15 - 000000000 ____D C:\Users\Georges\AppData\Roaming\Microsoft\Excel 2023-07-15 13:41 - 2018-12-21 18:43 - 000000000 ____D C:\Users\Georges\AppData\Local\D3DSCache 2023-07-15 13:37 - 2018-12-21 15:19 - 000000000 ____D C:\ProgramData\Packages 2023-07-15 13:34 - 2022-09-28 13:23 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1931265965-2266197506-1945926029-1001 2023-07-15 13:34 - 2022-09-28 13:23 - 000003384 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1931265965-2266197506-1945926029-1001 2023-07-15 13:34 - 2020-06-18 05:10 - 000002434 _____ C:\Users\Georges\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2023-07-14 09:50 - 2018-12-21 18:14 - 000914872 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2023-07-13 15:29 - 2022-10-14 12:53 - 000002080 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk 2023-07-13 15:29 - 2022-10-14 12:53 - 000002068 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk 2023-07-13 15:29 - 2022-09-28 13:23 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2023-07-12 08:46 - 2022-09-28 13:19 - 000429456 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2023-07-12 08:46 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\UUS 2023-07-12 08:46 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2023-07-12 08:46 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SystemResources 2023-07-12 08:46 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\Sgrm 2023-07-12 08:46 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\setup 2023-07-12 08:46 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates 2023-07-12 08:46 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\bcastdvr 2023-07-12 08:44 - 2022-05-07 07:17 - 000000000 ____D C:\WINDOWS\CbsTemp 2023-07-12 08:38 - 2018-12-21 15:01 - 000000000 ____D C:\WINDOWS\system32\MRT 2023-07-12 08:35 - 2018-12-21 15:01 - 173351160 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2023-07-11 16:35 - 2022-09-28 13:04 - 000000000 ____D C:\Users\Georges 2023-07-08 11:06 - 2022-09-28 13:23 - 000003690 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2023-07-08 11:06 - 2022-09-28 13:23 - 000003566 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2023-07-06 10:30 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\SecurityHealth 2023-07-01 12:03 - 2018-12-28 15:30 - 000000000 ____D C:\Program Files\Microsoft Office 2023-06-28 11:09 - 2022-05-07 07:24 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2023-06-28 11:09 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\oobe 2023-06-28 11:09 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\migwiz 2023-06-28 11:09 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\DDFs 2023-06-28 11:09 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\appraiser 2023-06-28 11:09 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\ShellComponents 2023-06-28 11:08 - 2018-06-12 22:18 - 000000000 ____D C:\Program Files\mcafee 2023-06-28 11:03 - 2022-09-28 13:19 - 003211776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2023-06-26 10:37 - 2023-04-19 12:05 - 000000000 ____D C:\Users\Georges\AppData\Local\CrashDumps 2023-06-25 12:00 - 2022-09-28 13:23 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP 2023-06-25 12:00 - 2021-04-24 15:42 - 000000000 ____D C:\Program Files\HPPrintScanDoctor 2023-06-23 16:17 - 2023-01-14 13:21 - 000000676 _____ C:\Users\Georges\Desktop\FullBat.vbs 2023-06-19 15:47 - 2018-12-28 15:45 - 000000000 ____D C:\Users\Georges\AppData\Roaming\Microsoft\Office ==================== Fichiers à la racine de certains dossiers ======== 2019-02-12 21:52 - 2019-08-25 13:45 - 000000285 _____ () C:\ProgramData\fontcacheev1.dat 2018-12-21 15:52 - 2017-12-01 02:11 - 000681320 _____ (WildTangent, Inc.) C:\ProgramData\uninstall3178986.exe 2018-12-28 16:00 - 2020-02-03 22:32 - 000007605 _____ () C:\Users\Georges\AppData\Local\Resmon.ResmonCfg ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================