Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 28-08-2023 Exécuté par MarieCavaglia (administrateur) sur LAPTOP-D6AU96AB (ASUSTeK COMPUTER INC. Vivobook_ASUSLaptop X3500PH_P3500CPH) (05-09-2023 12:58:40) Exécuté depuis C:\Users\MarieCavaglia\Downloads\FRST64.exe Profils chargés: False <==== ATTENTION (Profil temporaire?) Plate-forme: Microsoft Windows 10 Professionnel Version 22H2 19045.3324 (X64) Langue: Français (France) Navigateur par défaut: FF Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSOptimization\AsusOSD.exe (C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe ->) (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe (C:\Program Files (x86)\Trend Micro\Client Server Security Agent\CCSF\TmCCSF.exe ->) (Trend Micro, Inc. -> Trend Micro Inc.) C:\Program Files (x86)\Trend Micro\Client Server Security Agent\CCSF\module\BES\TmsaInstance64.exe (C:\Program Files (x86)\Trend Micro\Client Server Security Agent\HostedAgent\HostedAgent.exe ->) (Trend Micro, Inc. -> Trend Micro Inc.) C:\Program Files (x86)\Trend Micro\Client Server Security Agent\HostedAgent\logWriter.exe (C:\Program Files (x86)\Trend Micro\Client Server Security Agent\HostedAgent\svcGenericHost.exe ->) (Trend Micro, Inc. -> Trend Micro Inc.) C:\Program Files (x86)\Trend Micro\Client Server Security Agent\HostedAgent\CPM\TMCPMAdapter.exe (C:\Program Files (x86)\Trend Micro\Client Server Security Agent\HostedAgent\svcGenericHost.exe ->) (Trend Micro, Inc. -> Trend Micro Inc.) C:\Program Files (x86)\Trend Micro\Client Server Security Agent\HostedAgent\HostedAgent.exe (C:\Program Files (x86)\Trend Micro\Client Server Security Agent\HostedAgent\svcGenericHost.exe ->) (Trend Micro, Inc. -> Trend Micro Inc.) C:\Program Files (x86)\Trend Micro\Client Server Security Agent\HostedAgent\HostedTelemetry.exe (C:\Program Files (x86)\Trend Micro\Client Server Security Agent\TmListen.exe ->) (Trend Micro, Inc. -> Trend Micro Inc.) C:\Program Files (x86)\Trend Micro\Client Server Security Agent\TmSSClient.exe (C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (C:\Program Files\Microsoft Office\root\Office16\EXCEL.EXE ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\116.0.1938.69\msedgewebview2.exe <6> (C:\Program Files\Microsoft Office\root\Office16\EXCEL.EXE ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe (C:\Program Files\Microsoft Office\root\Office16\OUTLOOK.EXE ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\ai.exe (C:\Program Files\Veeam\Endpoint Backup\Veeam.EndPoint.Service.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\110\LocalDB\Binn\sqlservr.exe (DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSOptimization\AsusOptimization.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSOptimization\AsusOptimizationStartupTask.exe (DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSSoftwareManager\AsusSoftwareManager.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.​) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSSoftwareManager\AsusSoftwareManagerAgent.exe (explorer.exe ->) (CERTIF_NICOLAS_COOLMAN -> Nicolas Coolman) [Fichier non signé] C:\Users\MarieCavaglia\Downloads\ZHPSuite.exe (explorer.exe ->) (Delta Electronics, Inc. -> ) C:\Users\MarieCavaglia\AppData\Local\Novo\LauncherDetect.exe (explorer.exe ->) (Google LLC -> ) C:\Program Files\Google\Drive File Stream\79.0.2.0\crashpad_handler.exe <2> (explorer.exe ->) (Google LLC -> Google, Inc.) C:\Program Files\Google\Drive File Stream\79.0.2.0\GoogleDriveFS.exe <7> (explorer.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP OfficeJet Pro 7720 series\Bin\ScanToPCActivationApp.exe (explorer.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Scan\Bin\ScanToPCActivationApp.exe (explorer.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\EXCEL.EXE (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\OUTLOOK.EXE (explorer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (explorer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SnippingTool.exe (explorer.exe ->) (Veeam Software Group GmbH -> Veeam Software Group GmbH) C:\Program Files\Veeam\Endpoint Backup\Veeam.EndPoint.Tray.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <7> (Microsoft Corporation -> Microsoft Corporation) C:\Users\MarieCavaglia\AppData\Local\Microsoft\OneDrive\23.174.0820.0003\Microsoft.SharePoint.exe (Microsoft Corporation -> Microsoft Corporation) C:\Users\MarieCavaglia\AppData\Local\Microsoft\Teams\current\Teams.exe <9> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MusNotifyIcon.exe (Nitro Software, Inc. -> Nitro PDF) C:\Program Files\Nitro\Reader 5\NitroPDFReader.exe (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.​) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSLinkRemote\AsusLinkRemote.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\AsusAppService\AsusAppService.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSLinkNear\AsusLinkNear.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSOptimization\AsusOptimization.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSSoftwareManager\AsusSoftwareManager.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSSwitch\AsusSwitch.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSSystemAnalysis\AsusSystemAnalysis.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_2ca0a47853f51398\esif_uf.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe (services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft GameInput\x64\gameinputsvc.exe <2> (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvam.inf_amd64_31733448c5c05828\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe (services.exe ->) (Trend Micro, Inc. -> Trend Micro Inc.) C:\Program Files (x86)\Trend Micro\BM\TMBMSRV.exe (services.exe ->) (Trend Micro, Inc. -> Trend Micro Inc.) C:\Program Files (x86)\Trend Micro\Client Server Security Agent\CCSF\TmCCSF.exe (services.exe ->) (Trend Micro, Inc. -> Trend Micro Inc.) C:\Program Files (x86)\Trend Micro\Client Server Security Agent\HostedAgent\svcGenericHost.exe (services.exe ->) (Trend Micro, Inc. -> Trend Micro Inc.) C:\Program Files (x86)\Trend Micro\Client Server Security Agent\Ntrtscan.exe (services.exe ->) (Trend Micro, Inc. -> Trend Micro Inc.) C:\Program Files (x86)\Trend Micro\Client Server Security Agent\TmListen.exe (services.exe ->) (Trend Micro, Inc. -> Trend Micro Inc.) C:\Program Files (x86)\Trend Micro\Client Server Security Agent\TmWSCSvc.exe (services.exe ->) (Trend Micro, Inc. -> Trend Micro Inc.) C:\Program Files (x86)\Trend Micro\iService\iVP\iVPAgent.exe (services.exe ->) (Veeam Software Group GmbH -> Veeam Software Group GmbH) C:\Program Files\Veeam\Endpoint Backup\Veeam.EndPoint.Service.exe (svchost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> ) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2334.2.0_x64__cv1g1gvanyjgm\WhatsApp.exe (svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP OfficeJet Pro 7720 series\Bin\HPNetworkCommunicatorCom.exe (svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Scan\Bin\HPNetworkCommunicatorCom.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\MarieCavaglia\AppData\Local\Microsoft\OneDrive\23.174.0820.0003\FileCoAuth.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe (svchost.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_e879bbabfd265223\RtkAudUService64.exe <3> (Trend Micro, Inc. -> Trend Micro Inc.) C:\Program Files (x86)\Trend Micro\Client Server Security Agent\PccNtMon.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [Veeam.EndPoint.Tray.exe] => C:\Program Files\Veeam\Endpoint Backup\Veeam.EndPoint.Tray.exe [854552 2021-12-10] (Veeam Software Group GmbH -> Veeam Software Group GmbH) HKLM-x32\...\Run: [TeamsMachineInstaller] => C:\Program Files (x86)\Teams Installer\Teams.exe [124599048 2021-08-18] (Microsoft Corporation -> Microsoft Corporation) HKLM-x32\...\Run: [OfficeScanNT Monitor] => C:\Program Files (x86)\Trend Micro\Client Server Security Agent\pccntmon.exe [7484832 2023-08-22] (Trend Micro, Inc. -> Trend Micro Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [739448 2023-03-17] (Oracle America, Inc. -> Oracle Corporation) HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION HKU\S-1-12-1-3219978988-1159810680-774954374-2540382389\...\Run: [HubSpot for Windows] => C:\Users\MarieCavaglia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hubspot\HubSpot for Windows.appref-ms (Pas de fichier) HKU\S-1-12-1-3219978988-1159810680-774954374-2540382389\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\79.0.2.0\GoogleDriveFS.exe [147244312 2023-08-09] (Google LLC -> Google, Inc.) HKU\S-1-12-1-3219978988-1159810680-774954374-2540382389\...\Run: [DSALauncherDet] => C:\Users\MarieCavaglia\AppData\Local\Novo\LauncherDetect.exe [80352 2019-04-08] (Delta Electronics, Inc. -> ) HKU\S-1-12-1-3219978988-1159810680-774954374-2540382389\...\Run: [com.squirrel.Teams.Teams] => C:\Users\MarieCavaglia\AppData\Local\Microsoft\Teams\Update.exe [2588520 2023-08-24] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKU\S-1-12-1-3219978988-1159810680-774954374-2540382389\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [41584544 2023-08-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) HKU\S-1-12-1-3219978988-1159810680-774954374-2540382389\...\Run: [HP OfficeJet Pro 7720 (NET)] => C:\Program Files\HP\HP Scan\Bin\ScanToPCActivationApp.exe [6561344 2022-08-03] (HP Inc. -> HP Inc.) HKU\S-1-12-1-3219978988-1159810680-774954374-2540382389\...\Run: [HP OfficeJet Pro 7720 (NET) #2] => C:\Program Files\HP\HP OfficeJet Pro 7720 series\Bin\ScanToPCActivationApp.exe [4069976 2022-06-16] (HP Inc. -> HP Inc.) HKU\S-1-12-1-3219978988-1159810680-774954374-2540382389\...\Run: [Dispout] => C:\Users\MarieCavaglia\AppData\Local\Programs\Dispout\Dispout.exe (Pas de fichier) HKU\S-1-12-1-3219978988-1159810680-774954374-2540382389\...\Run: [MicrosoftEdgeAutoLaunch_62B3DA807CD198BE2BE6EE45F6029D3F] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4108328 2023-08-31] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-12-1-3219978988-1159810680-774954374-2540382389\...\RunOnce: [Delete Cached Update Binary] => C:\Windows\system32\cmd.exe /q /c del /q "C:\Users\MarieCavaglia\AppData\Local\Microsoft\OneDrive\Update\OneDriveSetup.exe" [64450472 2023-09-04] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-12-1-3219978988-1159810680-774954374-2540382389\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\Windows\system32\cmd.exe /q /c del /q "C:\Users\MarieCavaglia\AppData\Local\Microsoft\OneDrive\StandaloneUpdater\OneDriveSetup.exe" (Pas de fichier) HKU\S-1-12-1-3219978988-1159810680-774954374-2540382389\...\RunOnce: [Uninstall 23.169.0813.0001] => C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\MarieCavaglia\AppData\Local\Microsoft\OneDrive\23.169.0813.0001" [0 2023-09-04] () <==== ATTENTION [zéro octet Fichier/Dossier] HKU\S-1-12-1-3219978988-1159810680-774954374-2540382389\...\MountPoints2: {50a3f3e7-c351-11ed-b277-48e7da0f092e} - "D:\HiSuiteDownLoader.exe" HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\79.0.2.0\GoogleDriveFS.exe [147244312 2023-08-09] (Google LLC -> Google, Inc.) HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\79.0.2.0\GoogleDriveFS.exe [147244312 2023-08-09] (Google LLC -> Google, Inc.) HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\79.0.2.0\GoogleDriveFS.exe [147244312 2023-08-09] (Google LLC -> Google, Inc.) HKLM\...\Windows x64\Print Processors\hpcpp108: C:\Windows\System32\spool\prtprocs\x64\hpcpp108.DLL [331776 2011-04-13] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation) HKLM\...\Print\Monitors\Nitro PDF Port Monitor: C:\Windows\system32\nitrolocalmon10.dll [31904 2016-08-02] (Nitro Software, Inc. -> Nitro Software, Inc.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{89B4C1CD-B018-4511-B0A1-5476DBF70820}] -> C:\Windows\System32\Rundll32.exe C:\Windows\System32\mscories.dll,Install HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\116.0.5845.141\Installer\chrmstp.exe [2023-09-01] (Google LLC -> Google LLC) HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{89B4C1CD-B018-4511-B0A1-5476DBF70820}] -> C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install Startup: C:\Users\MarieCavaglia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Envoyer à OneNote.lnk [2023-04-21] ShortcutTarget: Envoyer à OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) ==================== Tâches planifiées (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {56B7ECB3-511E-4856-BF13-61C01D95D8C1} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424 2021-11-18] (Adobe Inc. -> Adobe Inc.) Task: {A07F164E-DF69-4F74-BB07-65646959ACA8} - System32\Tasks\ASUS Optimization 36D18D69AFC3 => C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSOptimization\AsusHotkey.exe [291408 2023-07-26] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) Task: {D2C3CC70-3BAD-4EEB-84F8-26102EA1B699} - System32\Tasks\ASUS Update Checker 2.0 => C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSSoftwareManager\AsusUpdateChecker.exe [797776 2023-07-26] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) Task: {7ABBFAC9-093B-4AD5-81FC-936859A0E936} - System32\Tasks\AsusSystemAnalysis_754F3273-0563-4F20-B12F-826510B07474 => C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSSystemAnalysis\AsusSystemAnalysis.exe [4082808 2023-07-26] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) Task: {E5AC83E3-9AD3-411D-BEFB-60782FEF20D4} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [714256 2023-08-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) Task: {631B302D-D621-4DC4-99BA-08CCB85FDDFA} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4703648 2023-08-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "f890e49a-9dcb-4eb9-bc0f-373fc8a6d4c9" --version "6.15.10623" --silent Task: {CCD40BBF-A9D4-42B0-944D-9E86DB406409} - System32\Tasks\CCleanerSkipUAC - MarieCavaglia => C:\Program Files\CCleaner\CCleaner.exe [34687904 2023-08-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) Task: {99F306BB-835E-4416-97EB-609DD7C66C89} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2022-01-02] (Google Inc -> Google Inc.) Task: {12008CB7-D891-4BC5-B4A8-4586AA5163A7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2022-01-02] (Google Inc -> Google Inc.) Task: {9A2E6FD8-84E6-4C06-ADBC-D741AFA8C06D} - System32\Tasks\HPCustParticipation HP ColorLaserJet MFP M178-M181 => C:\Program Files\HP\HP ColorLaserJet MFP M178-M181\Bin\HPCustPartic.exe [6663328 2021-11-22] (HP Inc. -> HP Inc.) Task: {09176E40-2D29-4232-A50E-0A2CDE273AD2} - System32\Tasks\HPCustParticipation HP OfficeJet Pro 7720 series => C:\Program Files\HP\HP OfficeJet Pro 7720 series\Bin\HPCustPartic.exe [6666840 2022-06-16] (HP Inc. -> HP Inc.) Task: {6A18AE69-5A79-48C7-B13A-BF98DAEAF644} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26913464 2023-08-31] (Microsoft Corporation -> Microsoft Corporation) Task: {E9785BA9-325D-4BC6-80B7-63240EE69286} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26913464 2023-08-31] (Microsoft Corporation -> Microsoft Corporation) Task: {669DF704-37EC-40AB-BFDA-9CB7BD3E4A65} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [158872 2023-08-31] (Microsoft Corporation -> Microsoft Corporation) Task: {CB18C8F5-436E-4846-8837-031243C3EB2F} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [158872 2023-08-31] (Microsoft Corporation -> Microsoft Corporation) Task: {DBBF5147-E56B-44DB-A4C8-B92709C28B53} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [167864 2023-08-01] (Microsoft Corporation -> Microsoft Corporation) Task: {66A54A6A-5BCE-4E31-AEAA-3604D015D7EF} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [675232 2023-08-31] (Mozilla Corporation -> Mozilla Corporation) -> --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {C8F8BE4A-08C7-49AB-BA1A-7C789E5D8BAC} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [722336 2023-08-31] (Mozilla Corporation -> Mozilla Foundation) Task: {D88C07BD-C0A9-4731-88B6-B865BA3EBD31} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2020-09-29] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log Task: {AA0576A7-DFC9-484C-B914-8C337901A5CD} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2020-09-29] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {BC7E05D4-26C4-4409-A15B-9E6F439B2E6C} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3336560 2021-04-08] (NVIDIA Corporation -> NVIDIA Corporation) Task: {C7449F6E-AE49-4DE8-9A6B-25B9B7855B68} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [645488 2021-04-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {AC5800D8-4D6E-404E-B721-D0E948EC06CE} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905584 2021-04-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {F112AB53-F4C1-4A36-8212-A7D1FAD95732} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905584 2021-04-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {D62364A1-1F60-429D-8713-504BBB6C1B7D} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1260400 2021-04-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {6A280479-FFC3-4670-9718-46933D6B99DF} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1260400 2021-04-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {41302F6A-404D-4BA0-95D4-14F1475B1182} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1260400 2021-04-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {2622C1D1-A09E-4A3B-B3D0-74F658B7CF49} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1260400 2021-04-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {1E644323-A58F-4C4D-924C-217455210FFB} - System32\Tasks\RtkAudUService64_BG => C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_e879bbabfd265223\RtkAudUService64.exe [1342880 2021-09-02] (Realtek Semiconductor Corp. -> Realtek Semiconductor) Task: {03D129E0-6F1D-42E0-83C8-D9E0A7831BBC} - System32\Tasks\Trend Micro Worry-Free Business Security Services Recovery Pack Tool => C:\Program Files (x86)\Trend Micro\WFBSSUpdater\WFBSSUpdater.exe [380352 2021-10-07] (Trend Micro, Inc. -> Trend Micro Inc.) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\Windows\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe Task: C:\Windows\Tasks\Trend Micro Worry-Free Business Security Services Recovery Pack Tool.job => C:\Program Files (x86)\Trend Micro\WFBSSUpdater\WFBSSUpdater.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{9d3fbedb-1499-4556-aaf7-da42bc269b0d}: [DhcpNameServer] 192.168.1.1 Edge: ======= Edge Profile: C:\Users\MarieCavaglia\AppData\Local\Microsoft\Edge\User Data\Default [2023-09-05] Edge Notifications: Default -> hxxps://meet.google.com Edge Extension: (Edge relevant text changes) - C:\Users\MarieCavaglia\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-08-08] FireFox: ======== FF DefaultProfile: vfg1eeey.default FF ProfilePath: C:\Users\MarieCavaglia\AppData\Roaming\Mozilla\Firefox\Profiles\vfg1eeey.default [2021-12-08] FF ProfilePath: C:\Users\MarieCavaglia\AppData\Roaming\Mozilla\Firefox\Profiles\6yg668rm.default-release-1666188035408 [2023-09-05] FF Notifications: Mozilla\Firefox\Profiles\6yg668rm.default-release-1666188035408 -> hxxps://meet.google.com FF Extension: (Traduisez des sites web dans votre navigateur sans avoir recours au cloud.) - C:\Users\MarieCavaglia\AppData\Roaming\Mozilla\Firefox\Profiles\6yg668rm.default-release-1666188035408\Extensions\firefox-translations-addon@mozilla.org.xpi [2023-08-14] FF Extension: (To Google Translate) - C:\Users\MarieCavaglia\AppData\Roaming\Mozilla\Firefox\Profiles\6yg668rm.default-release-1666188035408\Extensions\jid1-93WyvpgvxzGATw@jetpack.xpi [2023-08-14] FF Extension: (AdBlock — le meilleur bloqueur de pubs) - C:\Users\MarieCavaglia\AppData\Roaming\Mozilla\Firefox\Profiles\6yg668rm.default-release-1666188035408\Extensions\jid1-NIfFY2CA8fy1tg@jetpack.xpi [2023-03-07] FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2023-08-01] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.16 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2021-12-24] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @java.com/DTPlugin,version=11.371.2 -> C:\Program Files (x86)\Java\jre-1.8\bin\dtplugin\npDeployJava1.dll [2023-03-17] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.371.2 -> C:\Program Files (x86)\Java\jre-1.8\bin\plugin2\npjp2.dll [2023-03-17] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2023-08-01] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2023-08-01] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @nitropdf.com/NitroPDF -> C:\Program Files (x86)\Nitro\Reader 5\npnitromozilla.dll [2016-08-02] (Nitro Software, Inc. -> Nitro PDF) Chrome: ======= CHR Profile: C:\Users\MarieCavaglia\AppData\Local\Google\Chrome\User Data\Default [2023-08-30] CHR Notifications: Default -> hxxps://meet.google.com CHR Extension: (Google Docs hors connexion) - C:\Users\MarieCavaglia\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-07-26] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\MarieCavaglia\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-05-16] CHR HKU\S-1-12-1-3219978988-1159810680-774954374-2540382389\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] Brave: ======= BRA Profile: C:\Users\MarieCavaglia\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2023-08-13] BRA Extension: (Brave Local Data Files Updater) - C:\Users\MarieCavaglia\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2021-12-08] BRA Extension: (Brave NTP sponsored images) - C:\Users\MarieCavaglia\AppData\Local\BraveSoftware\Brave-Browser\User Data\lcenblphbmngnohghkhpojmpflebkcpd [2021-12-08] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-11-18] (Adobe Inc. -> Adobe Inc.) R2 AsusAppService; C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\AsusAppService\AsusAppService.exe [1177208 2023-07-26] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 ASUSLinkNear; C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSLinkNear\AsusLinkNear.exe [1630288 2023-07-26] (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) R2 ASUSLinkRemote; C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSLinkRemote\AsusLinkRemote.exe [772688 2023-07-26] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.​) R2 ASUSOptimization; C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSOptimization\AsusOptimization.exe [473168 2023-07-26] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 ASUSSoftwareManager; C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSSoftwareManager\AsusSoftwareManager.exe [1111120 2023-07-26] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 ASUSSwitch; C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSSwitch\AsusSwitch.exe [641104 2023-07-26] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 ASUSSystemAnalysis; C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSSystemAnalysis\AsusSystemAnalysis.exe [4082808 2023-07-26] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 ASUSSystemDiagnosis; C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe [832632 2023-07-26] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11817440 2023-08-31] (Microsoft Corporation -> Microsoft Corporation) S2 DtsApo4Service; C:\Windows\System32\DTS\PC\APO4x\DtsApo4Service.exe [215560 2021-06-06] (DTS, Inc. -> DTS Inc.) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [230352 2023-08-09] (HP Inc. -> HP Inc.) S2 IntelAudioService; C:\Windows\System32\DriverStore\FileRepository\intcoed.inf_amd64_06dd582276d3f601\AS\IAS\IntelAudioService.exe [532024 2022-06-02] (Intel Corporation -> Intel) R3 iVPAgent; C:\Program Files (x86)\Trend Micro\iService\iVP\iVPAgent.exe [1296912 2022-05-12] (Trend Micro, Inc. -> Trend Micro Inc.) S2 LogiSyncStub; C:\Program Files (x86)\Logitech\LogiSyncStub\LogiSyncStub.exe [2257984 2022-02-08] (Logitech Inc -> ) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [9286168 2023-08-30] (Malwarebytes Inc. -> Malwarebytes) R2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [Fichier non signé] S2 NitroReaderDriverReadSpool5; C:\Program Files\Nitro\Reader 5\NitroPDFReaderDriverService5x64.exe [327328 2016-08-02] (Nitro Software, Inc. -> Nitro Software, Inc.) R2 ntrtscan; C:\Program Files (x86)\Trend Micro\Client Server Security Agent\ntrtscan.exe [9641376 2023-08-22] (Trend Micro, Inc. -> Trend Micro Inc.) R2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [Fichier non signé] S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [402200 2023-08-09] (Microsoft Windows Publisher -> Microsoft Corporation) R2 svcGenericHost; C:\Program Files (x86)\Trend Micro\Client Server Security Agent\HostedAgent\svcGenericHost.exe [439200 2023-08-24] (Trend Micro, Inc. -> Trend Micro Inc.) R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [14863848 2022-04-15] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) R3 TMBMServer; C:\Program Files (x86)\Trend Micro\BM\TMBMSRV.exe [1986456 2023-05-30] (Trend Micro, Inc. -> Trend Micro Inc.) R3 TmCCSF; C:\Program Files (x86)\Trend Micro\Client Server Security Agent\CCSF\TmCCSF.exe [2483104 2023-08-22] (Trend Micro, Inc. -> Trend Micro Inc.) R2 tmlisten; C:\Program Files (x86)\Trend Micro\Client Server Security Agent\tmlisten.exe [9870752 2023-08-22] (Trend Micro, Inc. -> Trend Micro Inc.) R3 TmWSCSvc; C:\Program Files (x86)\Trend Micro\Client Server Security Agent\TmWSCSvc.exe [692472 2023-08-22] (Trend Micro, Inc. -> Trend Micro Inc.) R2 VeeamEndpointBackupSvc; C:\Program Files\Veeam\Endpoint Backup\Veeam.EndPoint.Service.exe [130072 2021-12-10] (Veeam Software Group GmbH -> Veeam Software Group GmbH) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.23080.2006-0\NisSrv.exe [3121008 2023-08-30] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.23080.2006-0\MsMpEng.exe [133688 2023-08-30] (Microsoft Windows Publisher -> Microsoft Corporation) S3 asrrealtimesrv; C:\Program Files (x86)\Advanced System Repair Pro 1.9.9.3.0\asrrealtimesrv.exe [X] S2 nlsX86cc; C:\Windows\SysWOW64\nlssrv32.exe [X] R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nvam.inf_amd64_31733448c5c05828\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\Windows\System32\DriverStore\FileRepository\nvam.inf_amd64_31733448c5c05828\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R3 AcxHdAudio; C:\Windows\System32\drivers\AcxHdAudio.sys [526848 2022-07-13] (Microsoft Windows -> Microsoft Corporation) R3 AsusPTPDrv; C:\Windows\System32\DriverStore\FileRepository\asusptpfilter.inf_amd64_ad2f0ace5aa7aa97\AsusPTPFilter.sys [94648 2021-03-29] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) R3 AsusSAIO; C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSSystemAnalysis\AsusSAIO.sys [49208 2023-07-26] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R1 ATKWMIACPIIO; C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSOptimization\AsusWmiAcpi.sys [48760 2023-07-26] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [158640 2023-08-30] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R1 googledrivefs31092; C:\Windows\System32\DRIVERS\googledrivefs31092.sys [384600 2023-02-08] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.) S3 GSCAuxDriver; C:\Windows\System32\DriverStore\FileRepository\gscauxdriver.inf_amd64_c88f56fe4c2427d9\GSCAuxDriverx64.sys [76568 2021-03-21] (Intel(R) pGFX 2020 -> Intel Corporation) S3 GSCx64; C:\Windows\System32\DriverStore\FileRepository\gscheci.inf_amd64_8eebd147e5c5a413\TeeDriverGSCW8x64.sys [251664 2021-03-21] (Intel(R) pGFX 2020 -> Intel Corporation) R3 iaLPSS2_GPIO2_TGL; C:\Windows\System32\DriverStore\FileRepository\ialpss2_gpio2_tgl.inf_amd64_c330c09d72f3e083\iaLPSS2_GPIO2_TGL.sys [128664 2021-01-28] (Intel Corporation -> Intel Corporation) R3 iaLPSS2_I2C_TGL; C:\Windows\System32\DriverStore\FileRepository\ialpss2_i2c_tgl.inf_amd64_312c3014729186bd\iaLPSS2_I2C_TGL.sys [201376 2021-01-28] (Intel Corporation -> Intel Corporation) R0 iaStorVD; C:\Windows\System32\drivers\iaStorVD.sys [1544912 2021-08-26] (Intel Corporation -> Intel Corporation) R3 IntcUSB; C:\Windows\System32\DriverStore\FileRepository\intcusb.inf_amd64_d97909364d9908a5\IntcUSB.sys [892968 2022-06-02] (Intel Corporation -> Intel(R) Corporation) R3 IntelGNA; C:\Windows\System32\DriverStore\FileRepository\gna.inf_amd64_689d3d5fefeef458\gna.sys [84880 2020-11-06] (Gaussian Mixture Models and Neural Networks Accelerator -> Intel Corporation) R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [222272 2023-08-30] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [21480 2023-08-30] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMFarflt; C:\Windows\System32\DRIVERS\farflt.sys [199640 2023-08-30] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MBAMProtection; C:\Windows\system32\DRIVERS\mbam.sys [78400 2023-08-30] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [239544 2023-08-30] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MBAMWebProtection; C:\Windows\system32\DRIVERS\mwac.sys [181984 2023-08-30] (Malwarebytes Inc. -> Malwarebytes) R3 MTKBTFilterx64; C:\Windows\system32\DRIVERS\mtkbtfilterx.sys [276960 2022-03-25] (Microsoft Windows Hardware Compatibility Publisher -> MediaTek Inc.) R3 mtkwlex; C:\Windows\System32\drivers\mtkwl6ex.sys [1393656 2022-03-24] (Microsoft Windows Hardware Compatibility Publisher -> MediaTek Inc.) R3 nvpcf; C:\Windows\System32\drivers\nvpcf.sys [202032 2021-05-07] (NVIDIA Corporation -> NVIDIA Corporation) S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) R1 tbimdsa; C:\Windows\system32\DRIVERS\tbimdsa.sys [525888 2022-05-12] (Trend Micro, Inc. -> Trend Micro) R2 tmactmon; C:\Windows\system32\DRIVERS\tmactmon.sys [174880 2023-07-27] (Microsoft Windows Hardware Compatibility Publisher -> Trend Micro Inc.) R1 tmcomm; C:\Windows\system32\DRIVERS\tmcomm.sys [444392 2023-07-27] (Microsoft Windows Hardware Compatibility Publisher -> Trend Micro Inc.) R3 tmeevw; C:\Windows\system32\DRIVERS\tmeevw.sys [161584 2023-05-30] (Microsoft Windows Hardware Compatibility Publisher -> Trend Micro, Inc.) S0 tmel; C:\Windows\System32\DRIVERS\tmel.sys [41456 2022-09-13] (Microsoft Windows Early Launch Anti-malware Publisher -> Trend Micro Inc.) R2 tmevtmgr; C:\Windows\system32\DRIVERS\tmevtmgr.sys [120616 2023-07-27] (Microsoft Windows Hardware Compatibility Publisher -> Trend Micro Inc.) R2 TmFilter; C:\Program Files (x86)\Trend Micro\Client Server Security Agent\TmXPFlt.sys [487728 2023-08-22] (Microsoft Windows Hardware Compatibility Publisher -> Trend Micro Inc.) R2 TmPreFilter; C:\Program Files (x86)\Trend Micro\Client Server Security Agent\TmPreFlt.sys [77624 2023-08-22] (Microsoft Windows Hardware Compatibility Publisher -> Trend Micro Inc.) R1 tmumh; C:\Windows\system32\DRIVERS\TMUMH.sys [225128 2023-05-30] (Microsoft Windows Hardware Compatibility Publisher -> Trend Micro Inc.) R3 tmusa; C:\Windows\system32\DRIVERS\tmusa.sys [137112 2021-09-27] (Trend Micro, Inc. -> Trend Micro, Inc.) S3 VeeamFLR; C:\Program Files\Veeam\Endpoint Backup\VeeamFCT.sys [303704 2021-12-10] (Microsoft Windows Hardware Compatibility Publisher -> Veeam Software Group GmbH) S3 VirtualDK; C:\Program Files\Veeam\Endpoint Backup\vdk.sys [57216 2021-12-10] (Microsoft Windows Hardware Compatibility Publisher -> Ken Kato) R2 VSApiNt; C:\Program Files (x86)\Trend Micro\Client Server Security Agent\VSApiNt.sys [2447112 2023-08-22] (Microsoft Windows Hardware Compatibility Publisher -> Trend Micro Inc.) S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [55872 2023-08-30] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [574872 2023-08-30] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [105864 2023-08-30] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2023-09-05 12:58 - 2023-09-05 12:59 - 000043138 _____ C:\Users\MarieCavaglia\Downloads\FRST.txt 2023-09-05 12:57 - 2023-09-05 12:59 - 000000000 ____D C:\FRST 2023-09-05 12:15 - 2023-09-05 12:57 - 002382336 _____ (Farbar) C:\Users\MarieCavaglia\Downloads\FRST64.exe 2023-09-05 12:11 - 2023-09-05 12:11 - 000447394 _____ C:\Users\MarieCavaglia\Desktop\ZHPDiag.html 2023-09-05 12:11 - 2023-09-05 12:11 - 000366446 _____ C:\Users\MarieCavaglia\Desktop\ZHPDiag.txt 2023-09-05 11:43 - 2023-09-05 11:43 - 000000875 _____ C:\Users\MarieCavaglia\Desktop\ZHPSuite.lnk 2023-09-05 10:44 - 2023-09-05 10:45 - 003511456 _____ (Nicolas Coolman) C:\Users\MarieCavaglia\Downloads\ZHPSuite.exe 2023-09-05 10:44 - 2023-09-05 10:44 - 003511456 _____ (Nicolas Coolman) C:\Users\MarieCavaglia\Downloads\ZHPSuite(1).exe 2023-09-05 09:34 - 2023-09-05 09:34 - 000117433 _____ C:\Users\MarieCavaglia\Downloads\ZBA3__0011865225-1.PDF 2023-09-04 15:15 - 2023-09-04 15:15 - 018098828 _____ C:\Users\MarieCavaglia\Downloads\DCE.zip 2023-09-04 14:40 - 2023-09-04 14:40 - 003850810 _____ C:\Users\MarieCavaglia\Downloads\03. DCE DLRO.zip 2023-09-04 11:58 - 2023-09-04 19:20 - 000013933 _____ C:\Users\MarieCavaglia\Desktop\ZHPCleaner (S).html 2023-09-04 11:58 - 2023-09-04 19:20 - 000006306 _____ C:\Users\MarieCavaglia\Desktop\ZHPCleaner (S).txt 2023-09-04 11:40 - 2023-09-05 12:11 - 000000000 ____D C:\Users\MarieCavaglia\AppData\Roaming\ZHP 2023-09-04 11:40 - 2023-09-05 11:43 - 000000000 ____D C:\Users\MarieCavaglia\AppData\Local\ZHP 2023-09-04 11:40 - 2023-09-04 11:40 - 003343008 _____ (Nicolas Coolman) C:\Users\MarieCavaglia\Downloads\ZHPCleaner.exe 2023-09-04 11:40 - 2023-09-04 11:40 - 000000885 _____ C:\Users\MarieCavaglia\Desktop\ZHPCleaner.lnk 2023-09-04 11:15 - 2023-09-04 11:15 - 015382695 _____ C:\Users\MarieCavaglia\Downloads\BROOK GREEN DMC - Destinations MICE - 2023.pdf 2023-09-04 10:32 - 2023-09-04 10:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trend Micro Security Agent 2023-09-04 10:09 - 2023-09-04 10:09 - 000117372 _____ C:\Users\MarieCavaglia\Downloads\ZBA3__0011865225.PDF 2023-09-04 09:54 - 2023-09-04 09:54 - 002893610 _____ C:\Users\MarieCavaglia\Downloads\Marquage Tapis de yoga.pdf 2023-09-04 09:33 - 2023-09-04 09:33 - 000424356 _____ C:\Users\MarieCavaglia\Downloads\CCTP_2023-F103_PrestaEvenemntlThematqEau.pdf 2023-09-04 09:33 - 2023-09-04 09:33 - 000332152 _____ C:\Users\MarieCavaglia\Downloads\CCAP_2023-F103_PrestaEvenemntlThematqEau.pdf 2023-08-31 19:24 - 2023-08-31 19:25 - 068437399 _____ C:\Users\MarieCavaglia\Downloads\Proposition commerciale - Soirée CMA Alsace.pdf 2023-08-31 18:28 - 2023-08-31 18:28 - 078360710 _____ C:\Users\MarieCavaglia\Downloads\Vesuvius europe - Séjour 2023_V4.pdf 2023-08-31 09:09 - 2023-08-31 20:06 - 000000000 ____D C:\Program Files\Mozilla Firefox 2023-08-31 04:22 - 2023-08-31 04:22 - 115867648 _____ C:\Windows\system32\config\SOFTWARE 2023-08-31 04:17 - 2023-08-31 04:22 - 000000000 ____D C:\Windows\Microsoft Antimalware 2023-08-30 18:46 - 2023-08-30 18:46 - 000181984 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys 2023-08-30 18:45 - 2023-08-30 18:45 - 000000000 ____D C:\Users\MarieCavaglia\AppData\Local\mbam 2023-08-30 18:40 - 2023-09-05 09:15 - 000000000 ____D C:\Users\MarieCavaglia\AppData\Local\Malwarebytes 2023-08-30 18:40 - 2023-08-30 18:40 - 000002035 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2023-08-30 18:40 - 2023-08-30 18:40 - 000002023 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2023-08-30 18:40 - 2023-08-30 18:40 - 000000000 ____D C:\ProgramData\Malwarebytes 2023-08-30 18:40 - 2023-08-30 18:40 - 000000000 ____D C:\Program Files\Malwarebytes 2023-08-30 18:39 - 2023-08-30 18:39 - 002606880 _____ (Malwarebytes) C:\Users\MarieCavaglia\Downloads\MBSetup.exe 2023-08-30 18:32 - 2023-08-30 18:32 - 008791352 _____ (Malwarebytes) C:\Users\MarieCavaglia\Downloads\malwarebytes-adwcleaner_8-4-0_fr_430277(1).exe 2023-08-30 18:30 - 2023-08-30 18:31 - 000000000 ____D C:\AdwCleaner 2023-08-30 18:30 - 2023-08-30 18:30 - 008791352 _____ (Malwarebytes) C:\Users\MarieCavaglia\Downloads\malwarebytes-adwcleaner_8-4-0_fr_430277.exe 2023-08-30 18:30 - 2023-08-30 18:30 - 000263576 _____ (AVAST Software) C:\Users\MarieCavaglia\Downloads\avast_free_antivirus_setup_online.exe 2023-08-30 16:20 - 2023-08-30 16:21 - 100415032 _____ C:\Users\MarieCavaglia\Downloads\Proposition commerciale - Dîner de la Sainte Barbe 2023_V2.pdf 2023-08-28 17:28 - 2023-08-28 17:28 - 000039816 _____ C:\Users\MarieCavaglia\Downloads\fichier_questionreponse (5).pdf 2023-08-28 16:19 - 2023-08-28 16:19 - 009730841 _____ C:\Users\MarieCavaglia\Downloads\Catalogue_mobilier_DLF_2022.pdf 2023-08-28 14:02 - 2023-08-28 14:02 - 000039827 _____ C:\Users\MarieCavaglia\Downloads\fichier_questionreponse (4).pdf 2023-08-28 09:29 - 2023-08-28 09:29 - 000039199 _____ C:\Users\MarieCavaglia\Downloads\fichier_questionreponse (3).pdf 2023-08-27 15:52 - 2023-08-27 15:55 - 000000000 ____D C:\Users\MarieCavaglia\OneDrive - MARIE & LINDA\Documents\Eddy 2023-08-27 14:53 - 2023-08-27 14:53 - 006406756 _____ C:\Users\MarieCavaglia\Downloads\dossier-15E64OVR_CAVAGLIA_EDDY-5DFF01-301-V2.pdf 2023-08-24 17:51 - 2023-08-24 17:51 - 000032069 _____ C:\Users\MarieCavaglia\Downloads\fichier_questionreponse (2).pdf 2023-08-24 11:46 - 2023-08-24 11:46 - 000402702 _____ C:\Users\MarieCavaglia\Downloads\23cp21-dc-modifie-v1.zip 2023-08-23 17:42 - 2023-08-23 17:42 - 149511383 _____ C:\Users\MarieCavaglia\Downloads\wetransfer_photo-ktur-8-jpg_2023-08-23_1501.zip 2023-08-23 17:40 - 2023-08-23 17:40 - 092643104 _____ C:\Users\MarieCavaglia\Downloads\wetransfer_img_5409-jpg_2023-08-23_1458.zip 2023-08-23 09:31 - 2023-08-23 09:31 - 014413788 _____ C:\Users\MarieCavaglia\Downloads\Smash.zip 2023-08-22 09:57 - 2023-08-22 09:57 - 000040316 _____ C:\Users\MarieCavaglia\Downloads\Design sans titre.svg 2023-08-21 19:32 - 2023-08-21 19:32 - 000677711 _____ C:\Users\MarieCavaglia\Downloads\fr-esr-liste_masters_2_selectifs.csv 2023-08-21 18:55 - 2023-08-21 18:55 - 000000000 ____D C:\Users\MarieCavaglia\OneDrive - MARIE & LINDA\Documents\CAF 2023-08-21 17:13 - 2023-08-21 17:14 - 000000000 ____D C:\Users\MarieCavaglia\Downloads\Au Carré - icônes 2023-08-21 17:07 - 2023-08-21 17:07 - 000080820 _____ C:\Users\MarieCavaglia\Downloads\Au Carré - icônes.zip 2023-08-21 16:58 - 2023-08-21 16:58 - 000006657 _____ C:\Users\MarieCavaglia\Downloads\Bulletins_Originaux_Avril-2.pdf 2023-08-21 16:58 - 2023-08-21 16:58 - 000006653 _____ C:\Users\MarieCavaglia\Downloads\Bulletins_Originaux_mai-2.pdf 2023-08-21 16:57 - 2023-08-21 16:57 - 000006658 _____ C:\Users\MarieCavaglia\Downloads\Bulletins_Originaux_Juin-2.pdf 2023-08-21 16:56 - 2023-08-21 16:56 - 000013227 _____ C:\Users\MarieCavaglia\Downloads\ilovepdf_extracted-pages(4).zip 2023-08-21 14:21 - 2023-08-21 14:21 - 000282077 _____ C:\Users\MarieCavaglia\Downloads\dce-v1(2).zip 2023-08-21 14:19 - 2023-08-21 14:19 - 005642555 _____ C:\Users\MarieCavaglia\Downloads\dce-v1(1).zip 2023-08-21 09:35 - 2023-08-21 09:50 - 000000022 _____ C:\Users\MarieCavaglia\Downloads\dce-v1.zip 2023-08-18 17:27 - 2023-08-18 17:27 - 003616147 _____ C:\Users\MarieCavaglia\Downloads\cpv_2008_xls.zip 2023-08-18 17:16 - 2023-08-18 17:16 - 001009463 _____ C:\Users\MarieCavaglia\Downloads\Correspondance_2003-2007_fr.xlsx 2023-08-18 17:09 - 2023-08-18 17:09 - 000954368 _____ C:\Users\MarieCavaglia\Downloads\cpv_2008_fr.xls 2023-08-18 16:41 - 2023-08-18 16:41 - 000028036 _____ C:\Users\MarieCavaglia\Downloads\fichier_questionreponse (1).pdf 2023-08-18 16:18 - 2023-08-18 16:18 - 000394687 _____ C:\Users\MarieCavaglia\Downloads\notification-d-offre-au-carre.docx (1).pdf 2023-08-18 15:05 - 2023-08-18 15:05 - 000033516 _____ C:\Users\MarieCavaglia\Downloads\double_door_2.zip 2023-08-18 15:00 - 2023-08-18 15:00 - 000006430 _____ C:\Users\MarieCavaglia\Downloads\double_door.zip 2023-08-18 11:47 - 2023-08-18 11:47 - 006245711 _____ C:\Users\MarieCavaglia\Downloads\FAC-plaquette-pro-tourisme-2022-2023-pages-1.pdf 2023-08-18 11:44 - 2023-08-18 11:44 - 006245711 _____ C:\Users\MarieCavaglia\Downloads\FAC-plaquette-pro-tourisme-2022-2023-pages.pdf 2023-08-15 11:56 - 2023-08-15 11:56 - 000111121 _____ C:\Users\MarieCavaglia\Downloads\Site web.zip 2023-08-15 10:20 - 2023-08-15 10:20 - 000121127 _____ C:\Users\MarieCavaglia\Downloads\015743528_32df02d0-db78-4400-9a40-a20befddb647=2023-04-30=AG_2=_RMPPRO_20230430.pdf 2023-08-15 09:54 - 2023-08-15 09:54 - 000004184 _____ C:\Users\MarieCavaglia\Downloads\facture_000010108223-1.pdf 2023-08-15 09:50 - 2023-08-15 09:50 - 000004184 _____ C:\Users\MarieCavaglia\Downloads\facture_000010108223.pdf 2023-08-15 09:47 - 2023-08-15 09:47 - 000194846 _____ C:\Users\MarieCavaglia\Downloads\ZRD2__2303890043-3.PDF 2023-08-15 09:47 - 2023-08-15 09:47 - 000194704 _____ C:\Users\MarieCavaglia\Downloads\ZRD2__2302802183-2.PDF 2023-08-10 11:37 - 2023-08-10 11:37 - 000020004 _____ C:\Users\MarieCavaglia\Downloads\sfr-facture-detail-B723-013010239.pdf 2023-08-09 17:29 - 2023-08-09 17:29 - 000000000 ___HD C:\$WinREAgent 2023-08-08 16:12 - 2023-08-08 16:12 - 000137024 _____ (Zoom Video Communications, Inc.) C:\Users\MarieCavaglia\Downloads\Zoom_cm_fo42pnktZ9vvrZo4_mUqhB0KEuzpejWydFIvB7Ru7oHGReaSFBWR7v@8RDhtUiNi5eZzPwy_k090dbeb4cf57a517_.exe 2023-08-07 18:05 - 2023-08-07 18:05 - 000030588 _____ C:\Users\MarieCavaglia\Downloads\WeddingTable6ft.zip ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2023-09-05 12:56 - 2020-11-21 14:38 - 000000000 ____D C:\Windows\system32\SleepStudy 2023-09-05 12:25 - 2021-09-21 22:44 - 000000000 ____D C:\ProgramData\NVIDIA 2023-09-05 12:24 - 2022-01-02 12:03 - 000000000 ____D C:\Program Files (x86)\Google 2023-09-05 12:24 - 2021-12-15 16:07 - 000000000 ____D C:\Windows\SystemTemp 2023-09-05 12:17 - 2021-12-08 21:21 - 000000000 ___SD C:\Users\MarieCavaglia\AppData\Roaming\Microsoft\Credentials 2023-09-05 12:15 - 2021-12-08 22:06 - 000000000 ____D C:\Users\MarieCavaglia\AppData\Roaming\Microsoft\Teams 2023-09-05 12:10 - 2021-12-08 23:20 - 000000000 ____D C:\Users\MarieCavaglia\AppData\Roaming\Microsoft\Excel 2023-09-05 11:41 - 2021-12-09 11:15 - 000000000 ____D C:\Users\MarieCavaglia\AppData\Roaming\Microsoft\Word 2023-09-05 10:04 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2023-09-05 09:21 - 2022-01-18 16:36 - 000000000 ____D C:\Program Files\TeamViewer 2023-09-05 09:16 - 2021-12-08 21:21 - 000000000 ____D C:\Users\MarieCavaglia\AppData\Local\D3DSCache 2023-09-05 00:55 - 2021-12-08 21:20 - 000003752 _____ C:\Windows\system32\Tasks\AsusSystemAnalysis_754F3273-0563-4F20-B12F-826510B07474 2023-09-04 19:21 - 2022-02-11 18:41 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2023-09-04 19:02 - 2023-06-05 14:28 - 000007600 _____ C:\Users\MarieCavaglia\AppData\Local\Resmon.ResmonCfg 2023-09-04 18:55 - 2021-09-21 22:42 - 000000000 __RHD C:\Users\Public\AccountPictures 2023-09-04 15:34 - 2021-12-08 21:21 - 000000000 ____D C:\Users\MarieCavaglia\AppData\Local\Packages 2023-09-04 11:53 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness 2023-09-04 11:50 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2023-09-04 10:32 - 2019-12-07 11:03 - 000032768 _____ C:\Windows\system32\config\ELAM 2023-09-04 10:31 - 2021-09-21 22:55 - 002799800 _____ C:\Windows\system32\PerfStringBackup.INI 2023-09-04 10:31 - 2020-11-21 14:06 - 001151820 _____ C:\Windows\system32\perfh00C.dat 2023-09-04 10:31 - 2020-11-21 14:06 - 000298774 _____ C:\Windows\system32\perfc00C.dat 2023-09-04 10:31 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF 2023-09-04 09:16 - 2023-05-11 17:38 - 000003612 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-12-1-3219978988-1159810680-774954374-2540382389 2023-09-04 09:16 - 2023-05-11 17:38 - 000003390 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-12-1-3219978988-1159810680-774954374-2540382389 2023-09-04 09:16 - 2023-05-11 17:38 - 000002455 _____ C:\Users\MarieCavaglia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2023-09-04 09:16 - 2021-12-08 21:43 - 000000000 ___RD C:\Users\MarieCavaglia\MARIE & LINDA 2023-09-04 09:16 - 2021-12-08 21:41 - 000000000 ___RD C:\Users\MarieCavaglia\OneDrive - MARIE & LINDA 2023-09-04 09:15 - 2022-05-16 11:05 - 000000000 ____D C:\Program Files\CCleaner 2023-09-04 09:14 - 2020-11-21 14:40 - 000002444 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2023-09-01 17:54 - 2021-12-08 22:17 - 000000000 ____D C:\Users\MarieCavaglia\AppData\Roaming\Nitro 2023-09-01 14:56 - 2022-10-23 16:10 - 000079360 _____ (Microsoft Corporation) C:\Windows\system32\xgamehelper.exe 2023-09-01 14:56 - 2022-10-23 16:10 - 000062976 _____ (Microsoft Corporation) C:\Windows\system32\xgamecontrol.exe 2023-09-01 14:56 - 2021-12-10 04:02 - 000169472 _____ (Microsoft Corporation) C:\Windows\system32\gamelaunchhelper.dll 2023-09-01 14:56 - 2021-12-08 21:38 - 002807296 _____ (Microsoft Corporation) C:\Windows\system32\xgameruntime.dll 2023-09-01 14:56 - 2021-12-08 21:38 - 000493056 _____ (Microsoft Corporation) C:\Windows\system32\gameplatformservices.dll 2023-09-01 14:56 - 2021-12-08 21:38 - 000247288 _____ (Microsoft Corporation) C:\Windows\system32\gamingservicesproxy.dll 2023-09-01 14:56 - 2021-12-08 21:38 - 000202240 _____ (Microsoft Corporation) C:\Windows\system32\gameconfighelper.dll 2023-09-01 14:56 - 2021-12-08 21:38 - 000131072 _____ (Microsoft Corporation) C:\Windows\system32\gamingtcuihelpers.dll 2023-09-01 09:58 - 2020-05-26 20:34 - 000000000 ____D C:\Users\MarieCavaglia\OneDrive - MARIE & LINDA\Documents\Doudou 2023-09-01 09:20 - 2020-11-21 14:43 - 000000000 ____D C:\Program Files\Microsoft Office 2023-08-31 20:06 - 2021-12-08 21:30 - 000001007 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2023-08-31 20:06 - 2021-12-08 21:30 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2023-08-30 18:59 - 2021-12-13 11:04 - 000000000 ____D C:\Program Files (x86)\CanicsFulala 2023-08-30 18:45 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp 2023-08-30 18:40 - 2019-12-07 11:14 - 000000000 ___HD C:\Windows\ELAMBKUP 2023-08-30 18:23 - 2021-12-08 21:21 - 000000000 __SHD C:\Users\MarieCavaglia\IntelGraphicsProfiles 2023-08-30 18:22 - 2021-09-21 23:40 - 000000000 ___HD C:\Intel 2023-08-30 18:22 - 2020-11-21 14:38 - 000008192 ___SH C:\DumpStack.log.tmp 2023-08-30 18:22 - 2020-11-21 14:38 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2023-08-30 18:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ServiceState 2023-08-30 18:17 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinBioDatabase 2023-08-30 18:17 - 2019-12-07 11:03 - 000786432 _____ C:\Windows\system32\config\BBI 2023-08-30 14:26 - 2020-05-26 20:33 - 000000000 ____D C:\Users\MarieCavaglia\OneDrive - MARIE & LINDA\Documents\Administratif 2023-08-30 11:40 - 2020-11-21 14:38 - 000000000 ____D C:\Windows\system32\Drivers\wd 2023-08-30 11:40 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows Defender 2023-08-30 11:30 - 2021-12-09 11:15 - 000918960 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2023-08-30 11:24 - 2021-12-09 11:52 - 000000000 ____D C:\Users\MarieCavaglia\AppData\Local\Deployment 2023-08-28 20:15 - 2021-12-14 20:17 - 000000000 ____D C:\Users\MarieCavaglia\AppData\Roaming\Microsoft\PowerPoint 2023-08-28 13:59 - 2021-12-08 23:48 - 000000000 ____D C:\Users\MarieCavaglia\AppData\Local\CrashDumps 2023-08-28 09:25 - 2022-05-16 11:06 - 000004210 _____ C:\Windows\system32\Tasks\CCleaner Update 2023-08-24 22:25 - 2022-09-21 09:29 - 000000760 _____ C:\Windows\Tasks\CCleanerCrashReporting.job 2023-08-24 10:13 - 2021-12-09 11:52 - 000000000 ____D C:\Users\MarieCavaglia\AppData\Local\Apps\2.0 2023-08-24 10:13 - 2021-12-08 22:06 - 000002418 _____ C:\Users\MarieCavaglia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk 2023-08-21 10:24 - 2021-12-08 22:08 - 000000000 ____D C:\Users\MarieCavaglia\AppData\Roaming\Microsoft\UProof 2023-08-18 10:16 - 2021-12-08 21:38 - 000247400 _____ (Microsoft Corporation) C:\Windows\system32\gamingservicesproxy.dll.0 2023-08-17 09:37 - 2022-09-21 09:29 - 000003486 _____ C:\Windows\system32\Tasks\CCleanerCrashReporting 2023-08-14 18:38 - 2022-01-18 16:36 - 000000000 ____D C:\Users\MarieCavaglia\AppData\Roaming\TeamViewer 2023-08-13 12:23 - 2021-12-17 19:25 - 000000000 ____D C:\Windows\Minidump 2023-08-09 22:03 - 2020-11-21 14:38 - 000467912 _____ C:\Windows\system32\FNTCACHE.DAT 2023-08-09 22:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata 2023-08-09 22:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources 2023-08-09 22:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinMetadata 2023-08-09 22:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\setup 2023-08-09 22:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\migwiz 2023-08-09 22:01 - 2021-09-21 23:34 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2023-08-09 22:01 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\appraiser 2023-08-09 22:01 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr 2023-08-09 22:01 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\appcompat 2023-08-09 19:26 - 2022-01-02 12:04 - 000002059 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk 2023-08-09 17:35 - 2020-11-21 14:40 - 003015168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll 2023-08-09 15:57 - 2021-12-10 04:01 - 000000000 ____D C:\Windows\system32\MRT 2023-08-09 15:55 - 2022-03-23 14:42 - 000000000 ____D C:\Windows\system32\Tasks\HP 2023-08-09 15:55 - 2021-12-13 10:24 - 000000000 ____D C:\Program Files\HPPrintScanDoctor 2023-08-09 15:54 - 2021-12-10 04:01 - 175983240 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2023-08-08 08:47 - 2022-05-16 11:06 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2023-08-08 08:47 - 2022-05-16 11:06 - 000002206 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2023-08-07 19:30 - 2020-05-26 20:34 - 000000000 ____D C:\Users\MarieCavaglia\OneDrive - MARIE & LINDA\Documents\Anniversaire ==================== Fichiers à la racine de certains dossiers ======== 2022-05-16 09:55 - 2022-05-16 09:55 - 000000000 _____ () C:\Program Files (x86)\Tre 2021-12-13 19:20 - 2022-03-21 19:27 - 000000132 _____ () C:\Users\MarieCavaglia\AppData\Roaming\Préfs Format PNG Adobe CS6 2022-08-23 11:14 - 2022-08-23 11:14 - 000017130 _____ () C:\Users\MarieCavaglia\AppData\Roaming\Valeurs séparées par une virgule.CAL 2021-12-13 11:04 - 2021-12-13 11:04 - 000016438 _____ () C:\Users\MarieCavaglia\AppData\Local\partner.bmp 2023-01-31 18:09 - 2023-01-31 18:23 - 000000128 _____ () C:\Users\MarieCavaglia\AppData\Local\PUTTY.RND 2023-06-05 14:28 - 2023-09-04 19:02 - 000007600 _____ () C:\Users\MarieCavaglia\AppData\Local\Resmon.ResmonCfg ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================